SUSE SLED15: ffmpeg-4 / ffmpeg-4-libavcodec-devel / ffmpeg-4-libavdevice-devel / etc (SUSE-SU-2026:4149-1)

critical Nessus Plugin ID 346205

Synopsis

The remote SUSE host is missing one or more security updates.

Description

The remote SUSE Linux SLED15 / SLED_SAP15 / SLES15 / SLES_SAP15 host has packages installed that are affected by multiple vulnerabilities as referenced in the SUSE-SU-2026:4149-1 advisory.

- CVE-2026-58049: incorrect validation in the RASC video decoder can lead to an out-of-bounds heap write and memory corruption (bsc#1269550).
- CVE-2026-64833: Out-of-Bounds Read via S/PDIF Muxer spdifenc.c (bsc#1272755).
- CVE-2026-64834: Infinite Loop DoS via RTP/ASF Demuxer (bsc#1272757).
- CVE-2026-65703: Out-of-Bounds Write in TDSC Video Decoder (bsc#1272759).
- CVE-2026-65704: Out-of-Bounds Write via TY Demuxer and Shorten Decoder (bsc#1272760).
- CVE-2026-65705: vf_floodfill Out-of-Bounds Write via filter_frame() (bsc#1272761).
- CVE-2026-65706: vf_swaprect Out-of-Bounds Write via NV12 Frame Processing (bsc#1272762).
- CVE-2026-66036: Heap Out-of-Bounds Write in vf_hqdn3d Filter (bsc#1272763).
- CVE-2026-70628: signed integer underflows during subtitle buffer checks can cause heap buffer overflows (bsc#1274268).
- CVE-2026-70629: unvalidated decompressed frame sizes in video decoders can cause uninitialized heap memory reads (bsc#1274270).
- CVE-2026-70630: unvalidated decompression sizes in Screenpresso frame decoding can cause uninitialized heap memory reads (bsc#1274282).
- CVE-2026-70631: unvalidated decompression sizes in TIFF strip decoding can cause uninitialized heap memory reads (bsc#1274287).
- CVE-2026-70632: unenforced frame dimensions in CineForm HD decoding can cause heap-based out-of-bounds writes (bsc#1274289).
- CVE-2026-75142: stack buffer overflow in the MPEG-PS muxer (bsc#1276408).
- CVE-2026-75143: heap buffer overflow in the RIST protocol reader (bsc#1276409).
- CVE-2026-75144: heap buffer overflow in the VC-2/Dirac RTP packetizer (bsc#1276410).
- CVE-2026-75146: out-of-bounds read in the DASH demuxer (bsc#1276412).

Tenable has extracted the preceding description block directly from the SUSE security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected packages.

See Also

https://bugzilla.suse.com/1269550

https://bugzilla.suse.com/1272755

https://bugzilla.suse.com/1272757

https://bugzilla.suse.com/1272759

https://bugzilla.suse.com/1272760

https://bugzilla.suse.com/1272761

https://bugzilla.suse.com/1272762

https://bugzilla.suse.com/1272763

https://bugzilla.suse.com/1274268

https://bugzilla.suse.com/1274270

https://bugzilla.suse.com/1274282

https://bugzilla.suse.com/1274287

https://bugzilla.suse.com/1274289

https://bugzilla.suse.com/1276408

https://bugzilla.suse.com/1276409

https://bugzilla.suse.com/1276410

https://bugzilla.suse.com/1276412

https://www.suse.com/security/cve/CVE-2026-58049

https://www.suse.com/security/cve/CVE-2026-64833

https://www.suse.com/security/cve/CVE-2026-64834

https://www.suse.com/security/cve/CVE-2026-65703

https://www.suse.com/security/cve/CVE-2026-65704

https://www.suse.com/security/cve/CVE-2026-65705

https://www.suse.com/security/cve/CVE-2026-65706

https://www.suse.com/security/cve/CVE-2026-66036

https://www.suse.com/security/cve/CVE-2026-70628

https://www.suse.com/security/cve/CVE-2026-70629

https://www.suse.com/security/cve/CVE-2026-70630

https://www.suse.com/security/cve/CVE-2026-70631

https://www.suse.com/security/cve/CVE-2026-70632

https://www.suse.com/security/cve/CVE-2026-75142

https://www.suse.com/security/cve/CVE-2026-75143

https://www.suse.com/security/cve/CVE-2026-75144

https://www.suse.com/security/cve/CVE-2026-75146

http://www.nessus.org/u?2213e06e

Plugin Details

Severity: Critical

ID: 346205

File Name: suse_SU-2026-4149-1.nasl

Version: 1.1

Type: Local

Agent: unix

Published: 9/16/2026

Updated: 9/16/2026

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Agentless Assessment, Continuous Assessment, Tenable Cloud Security, Tenable Self-Hosted Container Security, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 6.9

Percentile: 96.57

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS Score Source: CVE-2026-66036

CVSS v3

Risk Factor: High

Base Score: 8.8

Temporal Score: 7.9

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:P/RL:O/RC:C

CVSS v4

Risk Factor: Critical

Base Score: 9.3

Threat Score: 8.9

Threat Vector: CVSS:4.0/E:P

Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

CVSS Score Source: CVE-2026-75143

Vulnerability Information

CPE: cpe:/o:novell:suse_linux:15, p-cpe:/a:novell:suse_linux:ffmpeg-4-libavcodec-devel, p-cpe:/a:novell:suse_linux:ffmpeg-4-libavdevice-devel, p-cpe:/a:novell:suse_linux:ffmpeg-4-libavfilter-devel, p-cpe:/a:novell:suse_linux:ffmpeg-4-libavformat-devel, p-cpe:/a:novell:suse_linux:ffmpeg-4-libavresample-devel, p-cpe:/a:novell:suse_linux:ffmpeg-4-libavutil-devel, p-cpe:/a:novell:suse_linux:ffmpeg-4-libpostproc-devel, p-cpe:/a:novell:suse_linux:ffmpeg-4-libswresample-devel, p-cpe:/a:novell:suse_linux:ffmpeg-4-libswscale-devel, p-cpe:/a:novell:suse_linux:ffmpeg-4-private-devel, p-cpe:/a:novell:suse_linux:ffmpeg-4, p-cpe:/a:novell:suse_linux:libavcodec58_134, p-cpe:/a:novell:suse_linux:libavdevice58_13, p-cpe:/a:novell:suse_linux:libavfilter7_110, p-cpe:/a:novell:suse_linux:libavformat58_76, p-cpe:/a:novell:suse_linux:libavresample4_0, p-cpe:/a:novell:suse_linux:libavutil56_70, p-cpe:/a:novell:suse_linux:libpostproc55_9, p-cpe:/a:novell:suse_linux:libswresample3_9, p-cpe:/a:novell:suse_linux:libswscale5_9

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 9/14/2026

Vulnerability Publication Date: 6/25/2026

Reference Information

CVE: CVE-2026-58049, CVE-2026-64833, CVE-2026-64834, CVE-2026-65703, CVE-2026-65704, CVE-2026-65705, CVE-2026-65706, CVE-2026-66036, CVE-2026-70628, CVE-2026-70629, CVE-2026-70630, CVE-2026-70631, CVE-2026-70632, CVE-2026-75142, CVE-2026-75143, CVE-2026-75144, CVE-2026-75146

SuSE: SUSE-SU-2026:4149-1