Description

A flaw was found in FFmpeg's HLS demuxer. This vulnerability allows bypassing unsafe file extension checks and triggering arbitrary demuxers via base64-encoded data URIs appended with specific file extensions.

INFO

Published Date :

2025-01-06T16:41:14.621Z

Last Modified :

2025-11-03T19:29:00.544Z

Source :

fedora
AFFECTED PRODUCTS

The following products are affected by CVE-2023-6601 vulnerability.

Vendors Products
Ffmpeg
  • Ffmpeg
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2023-6601.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact