openSUSE-SU-2026:21258-1

See a problem?
Import Source
https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:21258-1.json
JSON Data
https://api.test.osv.dev/v1/vulns/openSUSE-SU-2026:21258-1
Upstream
Related
Published
2026-07-07T16:58:28Z
Modified
2026-07-09T18:24:31Z
Summary
Security update for ffmpeg-7
Details

This update for ffmpeg-7 fixes the following issue:

  • CVE-2026-30997: out-of-bounds read in the read_global_param() function allows for a DoS via crafted input (bsc#1262047).
References

Affected packages

openSUSE:Leap 16.0 / ffmpeg-7

Package

Name
ffmpeg-7
Purl
pkg:rpm/opensuse/ffmpeg-7&distro=openSUSE%20Leap%2016.0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
7.1.4-160000.2.1

Ecosystem specific

{
    "binaries": [
        {
            "ffmpeg-7": "7.1.4-160000.2.1",
            "ffmpeg-7-libavcodec-devel": "7.1.4-160000.2.1",
            "ffmpeg-7-libavdevice-devel": "7.1.4-160000.2.1",
            "ffmpeg-7-libavfilter-devel": "7.1.4-160000.2.1",
            "ffmpeg-7-libavformat-devel": "7.1.4-160000.2.1",
            "ffmpeg-7-libavutil-devel": "7.1.4-160000.2.1",
            "ffmpeg-7-libpostproc-devel": "7.1.4-160000.2.1",
            "ffmpeg-7-libswresample-devel": "7.1.4-160000.2.1",
            "ffmpeg-7-libswscale-devel": "7.1.4-160000.2.1",
            "libavcodec61": "7.1.4-160000.2.1",
            "libavdevice61": "7.1.4-160000.2.1",
            "libavfilter10": "7.1.4-160000.2.1",
            "libavformat61": "7.1.4-160000.2.1",
            "libavutil59": "7.1.4-160000.2.1",
            "libpostproc58": "7.1.4-160000.2.1",
            "libswresample5": "7.1.4-160000.2.1",
            "libswscale8": "7.1.4-160000.2.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:21258-1.json"