Search
Search is not available in local development.
Run npx pagefind --site __site after building to enable it.
JLSEC-2025-146

A flaw was found in FFmpeg's HLS demuxer

JLSEC Published
Modified
Affected Packages
FFMPEG_jll < 6.1.1+0
FFplay_jll < 7.1.0+0
Aliases / Upstream
CVE-2023-6601

A flaw was found in FFmpeg's HLS demuxer. This vulnerability allows bypassing unsafe file extension checks and triggering arbitrary demuxers via base64-encoded data URIs appended with specific file extensions.

References