216.73.217.22

CVE-2026-30997

· Published 13/04/2026 15:17 · Modified 13/04/2026 20:16

Labels: CVE-2026-30997 2026-04-13CVE-2026-30997CWE-125[email protected]

Essential information

Published
13/04/2026 15:17
Modified
13/04/2026 20:16
Author
Creator
CVSS
7.5 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CVSS metrics

Description

An out-of-bounds read in the read_global_param() function (libavcodec/av1dec.c) of FFmpeg v8.0.1 allows attackers to cause a Denial of Service (DoS) via a crafted input.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
ffmpeg / ffmpeg cpe:2.3:a:ffmpeg:ffmpeg:8.0.1:*:*:*:*:*:*:*

References