CVE-2026-38343: Integer Overflow
Published Aug 27, 2026
·Updated
An integer overflow in the libavfilter/vfscale.c component of FFmpeg N-122528-gdd2976b9e1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted video file.
Affected Software
1 affected component
FFmpeg FFmpeg=N-122528-gdd2976b9e1
Event History
Aug 27, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
Who is exposed to this issue?
Systems that process attacker-supplied video files with FFmpeg build N-122528-gdd2976b9e1 are exposed to a denial-of-service condition in the scale filter component.
2
What does an attacker need to exploit the vulnerability?
An attacker needs to supply a crafted video file for processing. The provided information does not indicate that authentication, local access, or user interaction is required.