CVE-2022-3965 | ffmpeg QuickTime Graphics Video Encoder libavcodec/smcenc.c smc_encode_stream y_size out-of-bounds (EUVD-2022-43297)
A vulnerability, which was classified as problematic, has been found in ffmpeg. Affected by this vulnerability is the function smc_encode_stream of the file libavcodec/smcenc.c of the component QuickTime Graphics Video Encoder. Performing a manipulation of the argument y_size results in out-of-bounds read.
This vulnerability was named CVE-2022-3965. The attack may be initiated remotely. There is no available exploit.
It is recommended to apply a patch to fix this issue.