CVE-2019-13312: Ffmpeg

High severity, CVSS 8.8. EPSS: 1.7% chance of exploitation in the next 30 days.

block_cmp() in libavcodec/zmbvenc.c in FFmpeg 4.1.3 has a heap-based buffer over-read.

Affected products

  • Ffmpeg Ffmpeg: version 4.1.3 only

Published 2019-07-05. Last modified 2026-06-17.