CVE-2026-18393
Gravedad CVSS v3.1:
MEDIA
Tipo:
CWE-787
Escritura fuera de límites
Fecha de publicación:
28/08/2026
Última modificación:
28/08/2026
Descripción
*** Pendiente de traducción *** A flaw was found in FFmpeg. The tdsc_load_cursor() function writes beyond<br />
the bounds of a heap-allocated buffer when processing crafted TDSC cursor<br />
data. A remote attacker could exploit this by supplying a specially crafted<br />
video file, potentially leading to a denial of service or arbitrary code<br />
execution.
Impacto
Puntuación base 3.x
5.40
Gravedad 3.x
MEDIA



