openSUSE-SU-2026:21258-1

See a problem?
Import Source
https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:21258-1.json
JSON Data
https://api.osv.dev/v1/vulns/openSUSE-SU-2026:21258-1
Upstream
Related
Published
2026-07-07T16:58:28Z
Modified
2026-07-09T10:00:12Z
Summary
Security update for ffmpeg-7
Details

This update for ffmpeg-7 fixes the following issue:

  • CVE-2026-30997: out-of-bounds read in the read_global_param() function allows for a DoS via crafted input (bsc#1262047).
References

Affected packages

openSUSE:Leap 16.0 / ffmpeg-7

Package

Name
ffmpeg-7
Purl
pkg:rpm/opensuse/ffmpeg-7&distro=openSUSE%20Leap%2016.0

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
7.1.4-160000.2.1

Ecosystem specific

{
    "binaries":  [
        {
            "ffmpeg-7":  "7.1.4-160000.2.1",
            "ffmpeg-7-libavcodec-devel":  "7.1.4-160000.2.1",
            "ffmpeg-7-libavdevice-devel":  "7.1.4-160000.2.1",
            "ffmpeg-7-libavfilter-devel":  "7.1.4-160000.2.1",
            "ffmpeg-7-libavformat-devel":  "7.1.4-160000.2.1",
            "ffmpeg-7-libavutil-devel":  "7.1.4-160000.2.1",
            "ffmpeg-7-libpostproc-devel":  "7.1.4-160000.2.1",
            "ffmpeg-7-libswresample-devel":  "7.1.4-160000.2.1",
            "ffmpeg-7-libswscale-devel":  "7.1.4-160000.2.1",
            "libavcodec61":  "7.1.4-160000.2.1",
            "libavdevice61":  "7.1.4-160000.2.1",
            "libavfilter10":  "7.1.4-160000.2.1",
            "libavformat61":  "7.1.4-160000.2.1",
            "libavutil59":  "7.1.4-160000.2.1",
            "libpostproc58":  "7.1.4-160000.2.1",
            "libswresample5":  "7.1.4-160000.2.1",
            "libswscale8":  "7.1.4-160000.2.1"
        }
    ]
}

Database specific

source
"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:21258-1.json"