SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-38350

HIGH · CVSS 7.5 EPSS 0.32%

Source: NVD + CISA KEV + EPSS · Published 2026-08-28 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

An integer overflow vulnerability in the target_sws_fuzzer() function of FFmpeg can be exploited by attackers to trigger a Denial of Service (DoS) condition through specially crafted inputs. Organizations using affected versions of FFmpeg should prioritize addressing this issue to prevent potential service disruptions.

CVE
CVE-2026-38350
Severity
HIGH
CVSS
7.5
EPSS
0.32%

Original NVD Description

An integer overflow in the target_sws_fuzzer() function (libswscale/output.c) of FFmpeg N-122528-gdd2976b9e1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted input.