
🚨High - FFmpeg CFHD Decoder Heap OOB Write via AVI Probe (CVE-2026-70632) FFmpeg’s native GoPro CineForm HD (CFHD) decoder hits a heap out-of-bounds write in cfhd_decode() due to a missing output-width invariant check; during stream probing, a crafted AVI drives horiz_filter_clip() to write past the output frame buffer. Heap corruption can be leveraged for RCE by overwriting a cleanup callback pointer. 👉Affected: FFmpeg >= 4.4, < 9.0
Post summary
The text announces a high‑severity heap out‑of‑bounds write in FFmpeg’s CFHD decoder that could allow arbitrary code execution via a crafted AVI file; no PoC, exploit, patch, or active exploitation is mentioned.
