What is CVE-2026-64833?
FFmpeg versions 0.7.1 through 8.1.2 contain an out-of-bounds read vulnerability in the S/PDIF muxer. Attackers can access memory beyond buffer boundaries by supplying a crafted DTS stream. Updating to the latest version is strongly recommended.
Azərbaycanca: FFmpeg-in 0.7.1-dən 8.1.2-yə qədər versiyalarında S/PDIF muxer-də 'out-of-bounds read' zəifliyi aşkarlanıb. Təcavüzkar xüsusi hazırlanmış DTS axını ilə bufer xaricindəki yaddaşa daxil ola bilər. FFmpeg-i ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-125
FAQ2
Which FFmpeg versions are affected by CVE-2026-64833?
The vulnerability affects FFmpeg versions from 0.7.1 through 8.1.2.
What can an attacker achieve by exploiting CVE-2026-64833?
An attacker can access memory beyond buffer boundaries by supplying a crafted DTS stream.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.