Integer overflow vulnerability in FFmpeg before n6.1, allows remote attackers to execute arbitrary code via the jpegxlanimread_packet component in the JPEG XL Animation decoder.
{ "urgency": "not yet assigned" }