CVE-2023-6602: Ffmpeg

Medium severity, CVSS 5.3. EPSS: 0.5% chance of exploitation in the next 30 days.

A flaw was found in FFmpeg's TTY Demuxer. This vulnerability allows possible data exfiltration via improper parsing of non-TTY-compliant input files in HLS playlists.

Affected products

  • Ffmpeg Ffmpeg: from 2.0, up to and including 6.0

Published 2024-12-31. Last modified 2026-06-17.