Post
OffSequence
offseq.bsky.social
did:plc:t5t6qep2vfipbi7f54demwev
CVE-2026-8461: FFmpeg MagicYUV decoder CRITICAL heap bug enables DoS/RCE via crafted AVI/MKV/MOV files. Patch to 8.1.2 immediately. Impacts Jellyfin, Nextcloud, more. https://radar.offseq.com/threat/ffmpeg-fixes-pixelsmash-flaw-in-widely-used-video--5ccb783d6ccf419b #OffSeq #FFmpeg #MediaSecurity
2026-06-22T22:30:16.060Z