SEPTEMBER 18, 2026
Live Feed
Back to database
Case File

CVE-2026-38348

HIGH · CVSS 7.5 EPSS 0.32%

Source: NVD + CISA KEV + EPSS · Published 2026-08-28 · Last synced 2026-09-18

CyberRota Analysis

AI-Generated

An integer overflow vulnerability in the libswscale/utils.c component of FFmpeg can be exploited by attackers to trigger a Denial of Service (DoS) by providing a specially crafted image file. Organizations using affected versions of FFmpeg should prioritize this issue to prevent potential service disruptions.

CVE
CVE-2026-38348
Severity
HIGH
CVSS
7.5
EPSS
0.32%

Original NVD Description

An integer overflow in the libswscale/utils.c component of FFmpeg N-122528-gdd2976b9e1 allows attackers to cause a Denial of Service (DoS) via supplying a crafted image file.