CVE-2026-75142: Ffmpeg
High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.
FFmpeg before commit 9d786e4 contains a stack buffer overflow in the MPEG-PS muxer (libavformat/mpegenc.c). When muxing input with more streams than the muxer's fixed-size stack buffer accommodates, the buffer is overflowed. A crafted input with an excessive number of streams triggers the overflow during MPEG-PS muxing.
Affected products
- Ffmpeg Ffmpeg
Published 2026-08-19. Last modified 2026-09-09.