A memory corruption vulnerability exists in FFmpeg before 8.1. The RTP encoding process. In the nal_send function in libavformat/rtpenc_h264_hevc.c, a negative size parameter (size=-3) is passed to memcpy when transmitting H.264/HEVC streams via RTP using a crafted input file. This was detected using AddressSanitizer.
Metrics
Affected Vendors & Products
References
History
Thu, 10 Sep 2026 04:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Memory Corruption in FFmpeg RTP Encoding Leading to Potential Remote Code Execution |
Wed, 09 Sep 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-787 | |
| Metrics |
cvssV3_1
|
Tue, 08 Sep 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A memory corruption vulnerability exists in FFmpeg before 8.1. The RTP encoding process. In the nal_send function in libavformat/rtpenc_h264_hevc.c, a negative size parameter (size=-3) is passed to memcpy when transmitting H.264/HEVC streams via RTP using a crafted input file. This was detected using AddressSanitizer. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2026-09-08T00:00:00.000Z
Updated: 2026-09-09T15:18:09.979Z
Reserved: 2026-03-04T00:00:00.000Z
Link: CVE-2026-30754
Updated: 2026-09-09T15:18:04.785Z
Status : Awaiting Analysis
Published: 2026-09-08T21:17:06.990
Modified: 2026-09-09T16:17:02.720
Link: CVE-2026-30754
No data.