CVE-2026-30999
A heap buffer overflow in the avbprintfinalize() function of FFmpeg v8.0.1 allows attackers to cause a Denial of Service (DoS) via a crafted input.
Package Versions Affected
Automatically patch vulnerabilities without upgrading
CVSS Version



Related Resources
References
https://excellent-oatmeal-319.notion.site/CVE-2026-30999-Memory-Leak-e0d88ac53e2e42c1b5ef9aa3497e27b6, https://ffmpeg.org/doxygen/7.0/zmqsend8csource.html, https://github.com/FFmpeg/FFmpeg/blob/master/tools/zmqsend.c, https://www.ffmpeg.org/download.html, https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/30xxx/CVE-2026-30999.json, https://nvd.nist.gov/vuln/detail/CVE-2026-30999