PT-2026-78526 · FFmpeg+2 · Ffmpeg+2

·

CVE-2026-75143

·

Published

2026-08-19

·

Updated

2026-09-09

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions FFmpeg versions prior to commit 1c10bcc
Description A heap buffer overflow exists in the RIST protocol reader within libavformat/librist.c. The function librist read() fails to respect its size argument, copying the entire received payload length into the destination buffer. This leads to an overflow when the payload size exceeds the buffer capacity. The issue is accessible via the async:rist:// URL scheme, where the async wrapper provides a buffer smaller than the incoming payload. A remote RIST sender can trigger this condition by sending a packet with a payload that exceeds the caller buffer size.
Recommendations Update FFmpeg to the version containing commit 1c10bcc or later.

Fix

Heap Based Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-75143
ECHO-A077-2F79-097B
OESA-2026-3542
OESA-2026-3543
OESA-2026-3544
OPENSUSE-SU-2026:11659-1
OPENSUSE-SU-2026:11665-1
OPENSUSE-SU-2026:11682-1
OPENSUSE-SU-2026:11716-1
USN-8716-1
USN-8716-2

Affected Products

Ffmpeg
Linuxmint
Ubuntu