{"id":"CVE-2026-82820","summary":"FLVMeta AMF String Processing amf.c amf_string_new heap-based overflow","details":"A vulnerability was found in FLVMeta up to 1.2.2. Affected is the function amf_string_new of the file src/amf.c of the component AMF String Processing. The manipulation of the argument length results in heap-based buffer overflow. The attack can be launched remotely. The exploit has been made public and could be used. The patch is identified as f412a33b9a84c2d1a9dee145a868feddbf64879e. A patch should be applied to remediate this issue. The project maintainer doubts the security impact: \"While I acknowledged the bugs and provided fixes, I have yet to see any way to exploit these alleged vulnerabilities.\"","modified":"2026-09-03T08:04:45.739611Z","published":"2026-08-31T18:30:08.737Z","database_specific":{"cna_assigner":"VulDB","cwe_ids":["CWE-119","CWE-122"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/82xxx/CVE-2026-82820.json"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/82xxx/CVE-2026-82820.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-82820"},{"type":"ADVISORY","url":"https://vuldb.com/cve/CVE-2026-82820"},{"type":"ADVISORY","url":"https://vuldb.com/submit/876596"},{"type":"ADVISORY","url":"https://vuldb.com/vuln/397243"},{"type":"REPORT","url":"https://github.com/noirotm/flvmeta/issues/27"},{"type":"REPORT","url":"https://vuldb.com/vuln/397243/cti"},{"type":"FIX","url":"https://github.com/noirotm/flvmeta/commit/f412a33b9a84c2d1a9dee145a868feddbf64879e"},{"type":"EVIDENCE","url":"https://github.com/raind20001020/Poc/blob/main/flvmeta_heap_buffer_overflow"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/noirotm/flvmeta","events":[{"introduced":"39f1c840d24eab3e21e9415df421afbbf40f902c"},{"fixed":"f412a33b9a84c2d1a9dee145a868feddbf64879e"}],"database_specific":{"extracted_events":[{"introduced":"1.2.0"},{"last_affected":"1.2.0"},{"introduced":"1.2.1"},{"last_affected":"1.2.1"},{"introduced":"1.2.2"},{"last_affected":"1.2.2"}],"source":["AFFECTED_FIELD","REFERENCES"]}}],"versions":["1.2.0","1.2.1","1.2.2","v1.2.2","v1.2.1","v1.2.0"],"database_specific":{"vanir_signatures_modified":"2026-09-03T08:04:45Z","vanir_signatures":[{"signature_version":"v1","source":"https://github.com/noirotm/flvmeta/commit/f412a33b9a84c2d1a9dee145a868feddbf64879e","target":{"file":"src/amf.c"},"deprecated":false,"digest":{"line_hashes":["310514777420173794807366857929631032940","244370841812237999735699935665842809825","128732334420010214190282016849375588116","101370302593737652182262194602810446547","251009801443111364011588183501236655053","130781754329986671525063898081549737686","159293484608031558171543201754742373418","43987466160122569819770566681973023583","85992325812327259723141091534380562807","73728616963582172539579608879150191070","99299901983208145384755733197203590256","165820954852985850711403580150185954695"],"threshold":0.9},"id":"CVE-2026-82820-4aab8ce0","signature_type":"Line"},{"deprecated":false,"digest":{"line_hashes":["297782582062901242244834457954230992243","7936062967026794509415722111970322622","122563071683213048106395023691305137802","8087127419057187517553055646896399794"],"threshold":0.9},"id":"CVE-2026-82820-54b8b3bf","signature_type":"Line","signature_version":"v1","source":"https://github.com/noirotm/flvmeta/commit/f412a33b9a84c2d1a9dee145a868feddbf64879e","target":{"file":"src/amf.h"}},{"source":"https://github.com/noirotm/flvmeta/commit/f412a33b9a84c2d1a9dee145a868feddbf64879e","target":{"file":"src/amf.c","function":"amf_data_clone"},"deprecated":false,"digest":{"function_hash":"264041650876922739760280910831815233974","length":928},"id":"CVE-2026-82820-6ec970c0","signature_type":"Function","signature_version":"v1"},{"target":{"file":"src/amf.c","function":"amf_string_new"},"deprecated":false,"digest":{"length":531,"function_hash":"281318379569081367423767149675183115732"},"id":"CVE-2026-82820-ae30346a","signature_type":"Function","signature_version":"v1","source":"https://github.com/noirotm/flvmeta/commit/f412a33b9a84c2d1a9dee145a868feddbf64879e"}],"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-82820.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:P"}]}