Skip to content

Comment on FFmpeg 9.0parent

Comments

To me the severity has nothing to do with how popular is a code path, but whether that code path is accessible to an attacker.

That's true for targeted attacks. For untargeted attacks, attackers have little incentive to do the exploit.

Targeted to what? ffmpeg? Ffmpeg is the OpenSSL of video transcoding, it is used absolutely everywhere. If there is a vulnerability in ffmpeg, any website that processes user supplied videos is vulnerable

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.