Siber Alem / Detail / 509 / Cve-2026-65706-ffmpeg-3-0-8-1-2-vf-swaprect-out-of-bounds-write-via-nv12-frame-processing
vuln_report_viewer.sh
VULN REPORT / local / ID: 509

CVE-2026-65706 - FFmpeg 3.0 - 8.1.2 vf_swaprect Out-of-Bounds Write via NV12 Frame Processing

2026-07-29
3 views
CVE-2026-65706
4.0
CVSS Severity Index Medium Severity / Orta Seviye

Summary

This entry details a vulnerability found in the target system. The exploit was published on 2026-07-29 and has garnered 3 views from the community. It is classified under the local category. Users are advised to review the source code in the Detail tab for technical specifics.

exploit_509.txt
<div class="space-y-6 font-sans select-text text-left"><div class="bg-[#1C1C1E] border border-white/5 rounded-lg p-5"><h3 class="text-xs font-bold text-white/50 mb-3 uppercase tracking-wider flex items-center gap-2"><i data-lucide="info" class="w-3.5 h-3.5 text-[#26A269]"></i>Zafiyet Ozet Bilgileri</h3><div class="grid grid-cols-1 md:grid-cols-2 gap-4 text-sm"><div class="flex items-center gap-2"><span class="text-white/40">Zafiyet Kodu:</span><strong class="text-[#FF5F56] font-mono">CVE-2026-65706</strong></div><div class="flex items-center gap-2"><span class="text-white/40">Siddet Derecesi:</span><span class="font-bold font-mono" style="color:#FF9800">HIGH</span></div><div class="flex items-center gap-2"><span class="text-white/40">CVSS Skoru:</span><span class="text-[#FFB800] font-bold font-mono">4</span></div><div class="flex items-center gap-2"><span class="text-white/40">Etkilenen Surumler:</span><span class="text-white/80 font-mono text-xs">Products</span></div><div class="flex items-center gap-2"><span class="text-white/40">Yayinlanma Tarihi:</span><span class="text-white/80 font-mono">29.07.2026</span></div></div></div><div><h3 class="text-xs font-bold text-white/50 mb-3 uppercase tracking-wider flex items-center gap-2"><i data-lucide="file-text" class="w-3.5 h-3.5 text-[#26A269]"></i>Zafiyet Detayı (Turkce)</h3><p class="text-white/70 leading-relaxed text-sm bg-[#1C1C1E]/30 p-4 border border-white/5 rounded-lg">FFmpeg 3.0 ila 8.1.2 sürümleri, vf_swaprect video filtresinde, saldırganların tek genişlikli boyutlara sahip hazırlanmış bir NV12 video çerçevesi sağlayarak yığın belleği bozmasına olanak tanıyan, sınırların dışında yazma güvenlik açığı içerir. Filter_frame() işlevi, düzlem 0&#039;ın tek baytlık piksel adımı için boyutlandırılmış geçici bir satır arabelleğini yeniden kullanır.</p></div><div><h3 class="text-xs font-bold text-white/50 mb-3 uppercase tracking-wider flex items-center gap-2"><i data-lucide="globe" class="w-3.5 h-3.5 text-[#26A269]"></i>Orijinal Aciklama (Ingilizce)</h3><p class="text-white/40 leading-relaxed text-xs bg-[#1C1C1E]/10 p-4 border border-white/5 rounded-lg italic">
    
    
      
        


  
    
      
        
          
          
            
              
                
              
              
                
              
            
            
              
                
              
              
                
              
            
          
          
            
              
              
              
            
          
          
             CVE ID, Product, Vendor ...
          
        
        
          
            
              
            
          
          
            Pricing
          
          
            
              
            
            
              
                
                  
                    Browse by Apps
                  
                  
                     View All Apps
                      
                  
                
              
              
                
                  
                    
                      
                      Splunk
                    
                  
                  
                    
                      
                      Slack
                    
                  
                  
                    
                      
                      Webhook
                    
                  
                  
                    
                      
                      Teams
                    
                  
                  
                    
                      
                      Jira
                    
                  
                  
                    
                      
                      Chrome
                    
                  
                
              
            
          
          
            
              
              
            
          
          
            
              
              
                API
              
            
          
          
              
   </p></div><div><h3 class="text-xs font-bold text-white/50 mb-3 uppercase tracking-wider flex items-center gap-2"><i data-lucide="external-link" class="w-3.5 h-3.5 text-[#26A269]"></i>Referanslar</h3><div class="bg-[#1C1C1E]/10 p-4 border border-white/5 rounded-lg"><a href="https://cvefeed.io/vuln/detail/CVE-2026-65706" target="_blank" class="text-[#3b82f6] hover:underline font-mono text-xs break-all">https://cvefeed.io/vuln/detail/CVE-2026-65706</a></div></div><div class="border-t border-white/5 pt-4 flex justify-between items-center text-xs"><span class="text-white/30">Otomatik olarak RSS feed'inden ice aktarildi.</span><a href="https://cvefeed.io/vuln/detail/CVE-2026-65706" target="_blank" class="inline-flex items-center gap-1.5 text-[#26A269] hover:underline font-bold transition-all">Kaynagi Goruntule <i data-lucide="external-link" class="w-3.5 h-3.5"></i></a></div></div>

Author Profile

Autopilot
Autopilot Elite Member
View All Submissions

Entry Stats

Views 3
Downloads 0
Comments 0
Siber Alem V1 Status: Operational | Exploits: 423 (156 Verified)
Ping: 18ms Lang: EN