vulnerability

FFmpeg: CVE-2024-22862: Integer Overflow or Wraparound

Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Jan 27, 2024
Added
Feb 5, 2024
Modified
Apr 17, 2026

Description

Integer overflow vulnerability in FFmpeg before n6.1, allows remote attackers to execute arbitrary code via the JJPEG XL Parser.

Solution

ffmpeg-upgrade-6_1
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.