AUGUST 15, 2026
Live Feed
Back to database
Case File

CVE-2026-21072

MEDIUM · CVSS 5.1 EPSS 0.12%

Source: NVD + CISA KEV + EPSS · Published 2026-08-10 · Last synced 2026-08-15

CyberRota Analysis

AI-Generated

Improper input validation in the VC1 codec within libsavsvc.so allows local attackers to exploit out-of-bounds memory write vulnerabilities, potentially leading to arbitrary code execution or system instability. Organizations utilizing affected versions of this library should prioritize patching to mitigate the risk of local exploitation. This vulnerability is particularly relevant for developers and system administrators managing multimedia processing applications.

CVE
CVE-2026-21072
Severity
MEDIUM
CVSS
5.1
EPSS
0.12%

Original NVD Description

Improper input validation in VC1 codec in libsavsvc.so prior to SMR Aug-2026 Release 1 allows local attackers to write out-of-bounds memory.