Bug 2506909 (CVE-2026-66036)
| Summary: | CVE-2026-66036 ffmpeg: FFmpeg: Arbitrary code execution via crafted video in vf_hqdn3d filter | ||
|---|---|---|---|
| Product: | [Other] Security Response | Reporter: | OSIDB Bzimport <bzimport> |
| Component: | vulnerability | Assignee: | Product Security <prodsec-ir-bot> |
| Status: | NEW --- | QA Contact: | |
| Severity: | high | Docs Contact: | |
| Priority: | high | ||
| Version: | unspecified | CC: | bbrownin |
| Target Milestone: | --- | Keywords: | Security |
| Target Release: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | |||
| Fixed In Version: | Doc Type: | --- | |
| Doc Text: |
A flaw was found in FFmpeg. A remote attacker can exploit a heap out-of-bounds write vulnerability within the `vf_hqdn3d` filter by providing a specially crafted video file. When filtergraph reinitialization is disabled, the filter allocates undersized memory buffers for video frames. Subsequent larger frames can cause the application to write beyond these allocated boundaries, leading to heap memory corruption. This can result in arbitrary code execution or a denial of service.
|
Story Points: | --- |
| Clone Of: | Environment: | ||
| Last Closed: | Type: | --- | |
| Regression: | --- | Mount Type: | --- |
| Documentation: | --- | CRM: | |
| Verified Versions: | Category: | --- | |
| oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
| Cloudforms Team: | --- | Target Upstream Version: | |
| Embargoed: | |||
| Bug Depends On: | 2510587, 2510591, 2510593, 2510595, 2510596 | ||
| Bug Blocks: | |||
|
Description
OSIDB Bzimport
2026-07-24 20:02:45 UTC
|