FFmpeg before commit acf5d7c contains a heap buffer overflow in the hvcC box writer. When writing an HEVC configuration record with more NAL units of a single type than the count field can represent, the NAL unit count overflows, causing a heap buffer overflow. A crafted HEVC input file triggers the overflow during muxing.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-08-19 17:21
Updated : 2026-08-31 20:37
NVD link : CVE-2026-75141
Mitre link : CVE-2026-75141
CVE.ORG link : CVE-2026-75141
JSON object : View
Products Affected
No product.
CWE
CWE-122
Heap-based Buffer Overflow
