Beveiligingsadvies

CVE-2026-18393

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-08-28 09:05:35
Laatst bijgewerkt 2026-08-28 15:55:50
Toegewezen door redhat
CVSS-score 5.4
Status PUBLISHED

Beschrijving

A flaw was found in FFmpeg. The tdsc_load_cursor() function writes beyond the bounds of a heap-allocated buffer when processing crafted TDSC cursor data. A remote attacker could exploit this by supplying a specially crafted video file, potentially leading to a denial of service or arbitrary code execution.