FFMPEG_jll
JLSEC-2026-653High 8.8UpstreamAn out-of-bounds write vulnerability in FFmpeg's libavcodec library, specifically in the …JLSEC-2026-652Critical 9.8UpstreamFFmpeg before 8.1 has an integer overflow and resultant out-of-bounds write via CENC (Com…JLSEC-2026-651High 7.5UpstreamNo summary availableJLSEC-2026-650High 7.5UpstreamNo summary availableJLSEC-2026-649High 7.5UpstreamNo summary availableJLSEC-2026-642Medium 5.5UpstreamNo summary availableJLSEC-2026-641Medium 5.5UpstreamNo summary availableJLSEC-2026-647High 8.7UpstreamIt is possible to cause an use-after-free write in SANM decoding with a carefully crafted…JLSEC-2026-646High 8.7UpstreamWhen decoding an OpenEXR file that uses DWAA or DWAB compression, there's an implicit ass…JLSEC-2026-645High 8.7UpstreamWhen decoding an OpenEXR file that uses DWAA or DWAB compression, there's an implicit ass…JLSEC-2026-644Medium 6.9UpstreamWhen decoding an OpenEXR file that uses DWAA or DWAB compression, the specified raw lengt…JLSEC-2026-648High 7.2UpstreamNo summary availableJLSEC-2025-152Medium 5.3Upstreamffmpeg 7.1 is vulnerable to Null Pointer Dereference in function `iamf_read_header` in...JLSEC-2025-151Medium 5.3UpstreamA vulnerability, which was classified as critical, was found in FFmpeg up to 7.1JLSEC-2026-643Medium 6.5UpstreamNo summary availableJLSEC-2025-150Medium 4.8UpstreamA vulnerability was found in FFmpeg up to 7.1JLSEC-2025-149Medium 4.8UpstreamUnchecked Return Value, Out-of-bounds Read vulnerability in FFmpeg allows Read Sensitive …JLSEC-2025-147High 7.2UpstreamA flaw was found in FFmpeg's DASH playlist supportJLSEC-2025-148Medium 5.3UpstreamA flaw was found in FFmpegJLSEC-2025-146Medium 4.7UpstreamA flaw was found in FFmpeg's HLS demuxerJLSEC-2025-145Medium 6.2UpstreamFFmpeg n6.1.1 has a vulnerability in the DXA demuxer of the libavformat library allowing …JLSEC-2025-144High 8.8UpstreamFFmpeg version n6.1.1 has a double-free vulnerability in the `fftools/ffmpeg_mux_init.c` …JLSEC-2025-143High 7.5UpstreamA flaw was found in FFmpeg's HLS playlist parsingJLSEC-2025-142Medium 5.3UpstreamA flaw was found in FFmpeg's TTY DemuxerJLSEC-2025-141Critical 9.1UpstreamFFmpeg n6.1.1 has an Out-of-bounds Read via `libavcodec/ppc/vp8dsp_altivec.c`, static con…JLSEC-2025-140Critical 9.1UpstreamFFmpeg n6.1.1 is Integer OverflowJLSEC-2025-139Medium 6.5UpstreamAn integer overflow in the component `/libavformat/westwood_vqa.c` of FFmpeg n6.1.1 allow…JLSEC-2025-137Medium 6.2UpstreamFFmpeg n6.1.1 has a vulnerability in the AVI demuxer of the libavformat library which all…JLSEC-2025-138Medium 6.2UpstreamFFmpeg n6.1.1 has an integer overflow vulnerability in the FFmpeg CAF decoder.JLSEC-2025-135Medium 5.3UpstreamFFmpeg n6.1.1 has a vulnerability in the WAVARC decoder of the libavcodec library which a…JLSEC-2025-136Medium 5.5UpstreamIn FFmpeg version n6.1.1, specifically within the `avcodec/speexdec.c` module, a potentia…JLSEC-2025-134Medium 6.9UpstreamA vulnerability, which was classified as critical, was found in FFmpeg up to 5.1.5JLSEC-2025-133Medium 6.9UpstreamA vulnerability was found in FFmpeg up to 7.0.1JLSEC-2026-636High 7.8UpstreamNo summary availableJLSEC-2026-640High 7.8UpstreamNo summary availableJLSEC-2026-639Medium 6.7UpstreamNo summary availableJLSEC-2026-638Low 3.6UpstreamNo summary availableJLSEC-2026-637High 8.0UpstreamNo summary availableJLSEC-2026-635High 7.8UpstreamNo summary availableJLSEC-2026-634High 7.8UpstreamNo summary availableJLSEC-2025-132High 7.8UpstreamFFmpeg v.n6.1-3-g466799d4f5 allows a buffer over-read at `ff_gradfun_blur_line_movdqa_sse…JLSEC-2025-131High 8.0UpstreamFFmpeg v.n6.1-3-g466799d4f5 allows a heap-based buffer overflow via the `ff_gaussian_blur…JLSEC-2025-130High 7.8UpstreamFFmpeg v.n6.1-3-g466799d4f5 allows memory consumption when using the colorcorrect filter,…JLSEC-2025-128Medium 4.0UpstreamFFmpeg v.n6.1-3-g466799d4f5 allows an attacker to trigger use of a parameter of negative …JLSEC-2025-129High 8.8UpstreamBuffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to e…JLSEC-2025-127Medium 5.3UpstreamFFmpeg version n5.1 to n6.1 was discovered to contain an Off-by-one Error vulnerability i…JLSEC-2025-126High 7.8UpstreamFFmpeg version n6.1 was discovered to contain a heap buffer overflow vulnerability in the…JLSEC-2025-125High 7.5UpstreamFFmpeg version n6.1.1 was discovered to contain a heap use-after-free via the `av_hwframe…JLSEC-2025-124High 7.5UpstreamAn issue was discovered in `decode_frame` in `libavcodec/tiff.c` in FFmpeg version 4.3, a…JLSEC-2025-123High 8.1Upstream`libavcodec/pthread_frame.c` in FFmpeg before 5.1.2, as used in VLC and other products, l…JLSEC-2025-122Medium 5.3UpstreamA null pointer dereference issue was discovered in 'FFmpeg' in `decode_main_header()` fun…JLSEC-2025-121High 7.5UpstreamAn issue was discovered in the FFmpeg package, where `vp3_decode_frame` in `libavcodec/vp…JLSEC-2025-120High 8.1UpstreamA vulnerability classified as problematic has been found in ffmpegJLSEC-2025-119Medium 5.5UpstreamAn integer overflow vulnerability was found in FFmpeg versions before 4.4.2 and before 5.…JLSEC-2025-118Critical 9.8Upstream`adts_decode_extradata` in `libavformat/adtsenc.c` in FFmpeg 4.4 does not check the `init…JLSEC-2025-117High 7.5UpstreamFFmpeg version (git commit de8e6e67e7523e48bb27ac224a0b446df05e1640) suffers from a an as…JLSEC-2025-116Medium 5.5UpstreamPrior to ffmpeg version 4.3, the tty demuxer did not have a '`read_probe`' function assig…JLSEC-2025-115Medium 5.5Upstream`libavcodec/dnxhddec.c` in FFmpeg 4.4 does not check the return value of the `init_vlc` f…JLSEC-2025-114High 8.8Upstream`dwa_uncompress` in `libavcodec/exr.c` in FFmpeg 4.4 allows an out-of-bounds array access…JLSEC-2025-113High 7.5UpstreamBuffer Overflow vulnerability exists in FFmpeg 4.1 via `apng_do_inverse_blend` in...JLSEC-2025-112High 8.8UpstreamFFmpeg <=4.3 contains a buffer overflow vulnerability in libavcodec through a crafted fil…JLSEC-2025-111High 7.5Upstream`decode_frame` in `libavcodec/exr.c` in FFmpeg 4.3.1 has an out-of-bounds write because o…JLSEC-2025-110Medium 6.5Upstream`track_header` in `libavformat/vividas.c` in FFmpeg 4.3.1 has an out-of-bounds write beca…JLSEC-2025-109High 8.8UpstreamFFmpeg through 4.3 has a heap-based buffer overflow in `avio_get_str` in `libavformat/avi…JLSEC-2025-108Critical 9.8Upstream`cbs_jpeg_split_fragment` in `libavcodec/cbs_jpeg.c` in FFmpeg 4.1 and 4.2.2 has a heap-b…JLSEC-2025-107Critical 9.8UpstreamFFmpeg before 4.2 has a heap-based buffer overflow in `vqa_decode_chunk` because of an ou…JLSEC-2025-106Critical 9.8UpstreamIn FFmpeg before 4.2, `avcodec_open2` in `libavcodec/utils.c` allows a NULL pointer deref…JLSEC-2025-105High 8.8UpstreamFFmpeg through 4.2 has a "Conditional jump or move depends on uninitialised value" issue …JLSEC-2025-104High 8.8UpstreamThe studio profile decoder in `libavcodec/mpeg4videodec.c` in FFmpeg 4.0 before 4.0.4 and…JLSEC-2025-103Medium 6.5UpstreamA denial of service in the subtitle decoder in FFmpeg 3.2 and 4.1 allows attackers to hog…JLSEC-2025-102Medium 6.5UpstreamIn FFmpeg 3.2 and 4.1, a denial of service in the subtitle decoder allows attackers to ho…JLSEC-2025-101Medium 6.5UpstreamFFMPEG version 4.1 contains a CWE-129: Improper Validation of Array Index vulnerability i…