CVE-2026-30997

An out-of-bounds read in the read_global_param() function (libavcodec/av1dec.c) of FFmpeg v8.0.1 allows attackers to cause a Denial of Service (DoS) via a crafted input.
Configurations

Configuration 1 (hide)

cpe:2.3:a:ffmpeg:ffmpeg:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2026-04-13 15:17

Updated : 2026-06-17 10:33


NVD link : CVE-2026-30997

Mitre link : CVE-2026-30997

CVE.ORG link : CVE-2026-30997


JSON object : View

Products Affected

ffmpeg

  • ffmpeg
CWE
CWE-125

Out-of-bounds Read