CVE-2026-40962Disclosure(ffmpeg / ffmpeg)

MEDIUMCVSS 9.8 · CRITICAL

Exploitation observed; activity peaked at 3 mentions and remains active

Immediate actions

  • Patch ffmpeg ffmpeg systems immediately
  • Assume compromise if assets are exposed

Recommended action window: Immediate (within 24h)

NVD description

FFmpeg before 8.1 has an integer overflow and resultant out-of-bounds write via CENC (Common Encryption) subsample data to libavformat/mov.c.

4.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-190

Priority

MEDIUM

Exploitation

ACTIVE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • ffmpeg

Threat summary

  • Active exploitation appears in 1 classified signals
  • Patch or workaround signal is available
  • 4 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Active exploitation reported across 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 4 signals
  • Disclosure: 2 classified signals
  • General: 1 classified signal
  • Peaked 1d ago at 3 mentions (2026-04-16); latest day: 1
  • 4 total mentions across 2 days

Affected systems

Vendors
Products
ffmpeg

Deep dive

Activity timeline4 mentions / 2d
01223Mentions · 2026-04-16: 3Mentions · 2026-05-29: 1Active Exploitation · 2026-04-16: 1Patch / Workaround · 2026-04-16: 1Technical Details · 2026-04-16: 3Technical Details · 2026-05-29: 104-1605-29
Signal classification3 categories
Disclosure
250.0%
Active Exploitation
125.0%
General
125.0%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-04-163
Active Exploitation1Disclosure1General1
2026-05-291
Disclosure1
Full discourse4 posts
  • Ferramentas Linux@Cezar_H_Linux
    Disclosure

    #Mageia em alerta? Vulnerabilidades no FFmpeg (CVE-2026-30997 e CVE-2026-40962) podem travar seu sistema com um simples arquivo de mídia. Saiba mais -> http://tinyurl.com/4d9xc2vk https://t.co/rWbm7rLhOs

    Post summary

    The tweet alerts Mageia users to two FFmpeg CVEs that can trigger system crashes via malicious media files, providing a link for more details but no PoC, exploits, or remediation information.

    1000077
    1.5K followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-40962 FFmpeg before 8.1 has an integer overflow and resultant out-of-bounds write via CENC (Common Encryption) subsample data to libavformat/mov.c. https://www.cve.org/CVERecord?id=CVE-2026-40962

    Post summary

    CVE‑2026‑40962 identifies an integer overflow in FFmpeg versions prior to 8.1 that results in an out‑of‑bounds write via Common Encryption subsample data, as documented in the CVE record.

    0000085
    57.2K followersView on X
  • NerdieNews@NewsNerdie
    Active Exploitation

    FFmpeg CVE-2026-40962 is under active exploitation—attackers can execute arbitrary code via a buffer overflow. This impacts millions of multimedia apps globally. Patch now to prevent compromise. #NerdieNews #CyberSecurity #InfoSec #Vulnerability #ICS #Cisco https://t.co/N3zE00Br29

    Post summary

    FFmpeg CVE-2026-40962 is actively exploited via a buffer overflow, enabling arbitrary code execution; immediate patching is recommended to mitigate the risk.

    0000080
    55 followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    General

    CVE-2026-40962 Integer Overflow and Out-of-Bounds Write in FFmpeg Before 8.1 CENC https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-40962

    Post summary

    The post reports an integer overflow and out-of-bounds write vulnerability in FFmpeg prior to version 8.1, but offers no PoC, exploit, or mitigation details.

    0000055
    4.0K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appffmpegffmpeg---

Explore more