CVE-2026-21072: Input Validation
Improper input validation in VC1 codec in libsavsvc.so prior to SMR Aug-2026 Release 1 allows local attackers to write out-of-bounds memory.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-21072?
CVE-2026-21072 has a risk score of 38, indicating a critical vulnerability in the VC1 codec of libsavsvc.so.
How do I fix CVE-2026-21072?
To mitigate CVE-2026-21072, ensure you update libsavsvc.so to the version released in SMR Aug-2026 Release 1.
What type of vulnerability is CVE-2026-21072?
CVE-2026-21072 is categorized as an input validation vulnerability that allows local attackers to exploit out-of-bounds memory writes.
Who is affected by CVE-2026-21072?
CVE-2026-21072 affects users and applications that utilize the VC1 codec within libsavsvc.so prior to the specified release.
What are the potential impacts of CVE-2026-21072?
Exploitation of CVE-2026-21072 could allow local attackers to manipulate memory, potentially leading to system instability or code execution.