Search
Search is not available in local development.
Run npx pagefind --site __site after building to enable it.
JLSEC-2025-103

A denial of service in the subtitle decoder in FFmpeg 3.2 and 4.1 allows attackers to hog the CPU vi...

JLSEC Published
Modified
Affected Packages
FFMPEG_jll < 4.3.1+0
Aliases / Upstream
CVE-2019-9721

A denial of service in the subtitle decoder in FFmpeg 3.2 and 4.1 allows attackers to hog the CPU via a crafted video file in Matroska format, because handleopenbrace in libavcodec/htmlsubtitles.c has a complex format argument to sscanf.

References