CVE-2023-6602: Ffmpeg
Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.
A flaw was found in FFmpeg's TTY Demuxer. This vulnerability allows possible data exfiltration via improper parsing of non-TTY-compliant input files in HLS playlists.
Affected products
- Ffmpeg Ffmpeg: from 2.0, up to and including 6.0
Published 2024-12-31. Last modified 2026-06-17.