CVE-2026-38345CWE-369
CVE-2026-38345
Medium · published August 28, 2026
What it is
A Division-by-Zero vulnerability in the ff_sws_init_single_context function (/libswscale/utils.c) of FFmpeg N-122528-gdd2976b9e1 allows attackers to cause a Denial of Service (DoS) via a crafted input.
The record
Technical detail
- CVSS v3.1
- 6.5 · MEDIUM
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
- CVSS v4.0
- Not supplied
- EPSS
- 0.00245 · 15.7th percentile
- Weakness
- CWE-369 · Divide By Zero
- Published
- 2026-08-28T04:17Z
References (2)
EPSS history
Timeline