Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

openSUSE Leap 16.0 ffmpeg-4 Major Buffer Overflow Fix 2026-20914-1

opensuse
Calendar Grey June 8, 2026
Dist Opensuse Esm H88
Update resolves a critical buffer overflow in ffmpeg-4 for openSUSE Leap 16.0, ensuring system stability and security.
An update that solves one vulnerability and has one bug fix can now be installed.

Description

This update for ffmpeg-4 fixes the following issues:

Changes in ffmpeg-4:

- CVE-2026-30997: avcodec/av1dec: check that primary_ref_frame is within range (bsc#1262047)

Patch instructions:

To install this openSUSE security update use the suse recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 16.0

zypper in -t patch openSUSE-Leap-16.0-packagehub-299=1

Patch

Package List

- openSUSE Leap 16.0:

ffmpeg-4-4.4.7-bp160.2.1

ffmpeg-4-libavcodec-devel-4.4.7-bp160.2.1

ffmpeg-4-libavdevice-devel-4.4.7-bp160.2.1

ffmpeg-4-libavfilter-devel-4.4.7-bp160.2.1

ffmpeg-4-libavformat-devel-4.4.7-bp160.2.1

ffmpeg-4-libavresample-devel-4.4.7-bp160.2.1

ffmpeg-4-libavutil-devel-4.4.7-bp160.2.1

ffmpeg-4-libpostproc-devel-4.4.7-bp160.2.1

ffmpeg-4-libswresample-devel-4.4.7-bp160.2.1

ffmpeg-4-libswscale-devel-4.4.7-bp160.2.1

ffmpeg-4-private-devel-4.4.7-bp160.2.1

libavcodec58_134-4.4.7-bp160.2.1

libavdevice58_13-4.4.7-bp160.2.1

libavfilter7_110-4.4.7-bp160.2.1

libavformat58_76-4.4.7-bp160.2.1

libavresample4_0-4.4.7-bp160.2.1

libavutil56_70-4.4.7-bp160.2.1

libpostproc55_9-4.4.7-bp160.2.1

libswresample3_9-4.4.7-bp160.2.1

libswscale5_9-4.4.7-bp160.2.1

References

* bsc#1262047

References:

* https://www.suse.com/security/cve/CVE-2026-30997.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2026:20914-1
Rating: important
Affected Products: openSUSE Leap 16.0 -------------------------------------------------------------

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here