Loading
An out-of-bounds read in the read_global_param() function (libavcodec/av1dec.c) of FFmpeg v8.0.1 allows attackers to cause a Denial of Service (DoS) via a crafted input.
Use CWE-125, Ffmpeg vendor hub and Ffmpeg product page to widen CVE-2026-30997 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2026-30999, CVE-2026-30998 and CVE-2025-63757 for nearby disclosures in the same product family.