CVE-2026-64833: FFmpeg 0.7.1 - 8.1.2 Out-of-Bounds Read via S/PDIF Muxer spdifenc.c
FFmpeg versions 0.7.1 through 8.1.2 contain an out-of-bounds read vulnerability in the S/PDIF muxer that allows attackers to access memory beyond buffer boundaries by supplying a crafted DTS stream with a coresize value larger than the actual packet length. Attackers can exploit the missing bounds check in the spdifheaderdts4 function by providing a malicious DTS-HD audio stream during S/PDIF re-muxing to trigger unauthorized memory reads beyond the packet buffer.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
FFmpeg spdifenc.c (S/PDIF muxer, spdif_header_dts4 out-of-bounds read)to a version that resolves this vulnerability.Fixed in 8.1.2
Event History
Frequently Asked Questions
What is the severity of CVE-2026-64833?
CVE-2026-64833 has a high severity rating of 7.1.
What kind of vulnerability is CVE-2026-64833?
CVE-2026-64833 is an out-of-bounds read vulnerability in the S/PDIF muxer.
How can CVE-2026-64833 be exploited?
CVE-2026-64833 can be exploited by supplying a crafted DTS stream with a core_size value larger than the actual packet length.
Which versions of FFmpeg are affected by CVE-2026-64833?
FFmpeg versions 0.7.1 through 8.1.2 are affected by CVE-2026-64833.
How do I fix CVE-2026-64833?
To fix CVE-2026-64833, update to a version of FFmpeg that is beyond 8.1.2.