CVE-2026-38348: Integer Overflow
Published Aug 27, 2026
·Updated
An integer overflow in the libswscale/utils.c component of FFmpeg N-122528-gdd2976b9e1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted image file.
Affected Software
1 affected component
FFmpeg FFmpeg=N-122528-gdd2976b9e1
Event History
Aug 27, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What must an attacker provide to trigger the denial of service?
The attacker needs to supply a crafted image file that reaches the vulnerable libswscale/utils.c code path.
2
What is the known impact of successful exploitation?
Successful exploitation can cause a denial of service. The provided information does not indicate code execution, data disclosure, or privilege escalation.