CVE-2026-66040 | FFmpeg up to 8.1.2 PNG/APNG encoders png_write_chunk out-of-bounds write (b506faf)

SecurityVulns

A vulnerability was found in FFmpeg up to 8.1.2 and classified as critical. The impacted element is the function png_write_chunk of the component PNG/APNG encoders. The manipulation results in out-of-bounds write.

This vulnerability is identified as CVE-2026-66040. The attack can be executed remotely. There is not any exploit available.

Applying a patch is advised to resolve this issue.VulDB Recent EntriesRead More