Post #3812102
2026-06-26 08:16 UTC
Replies (2)
-
@peertube@framapiaf.org 2026-06-26 08:17
@shibilme@mastodon.social For administrators that run a PeerTube instance or PeerTube runners.
-
@tshirtman@mas.to 2026-06-26 08:20
@shibilme@mastodon.social @peertube@framapiaf.org anyone who plays or process media files with ffmpeg, that’s a lot of people. It’s a bug in decoding frames to convert them into pixels to display on your screen. > Desktop: a user opens the malicious file in a video player, or simply browses to a folder containing it (the file manager’s thumbnail generator triggers the vulnerability) Server-side: a user uploads the file to a media server (Jellyfin, Emby, Nextcloud, Immich), chat platform (Slack, Discord, Telegram), or cloud transcoding service (AWS MediaConvert, Cloudflare Stream) – the server processes it automatically Embedded/IoT: any NAS appliance (Synology, QNAP), smart TV, or media appliance that generates video thumbnails or previews