CVE-2026-30754
N/A
N/A
Summary
A memory corruption vulnerability exists in FFmpeg before 8.1. The RTP encoding process. In the nal_send function in libavformat/rtpenc_h264_hevc.c, a negative size parameter (size=-3) is passed to memcpy when transmitting H.264/HEVC streams via RTP using a crafted input file. This was detected using AddressSanitizer.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
References
- https://code.ffmpeg.org/FFmpeg/FFmpeg/pulls/20746
- https://github.com/momo-trip/poc_ffmpeg
- https://gist.github.com/momo-trip/4cddf2c9e15600873de55259dac6b0e6
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.