<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:dc="http://purl.org/dc/elements/1.1/" version="2.0">
  <channel>
    <title>InfoQ - FFmpeg Video Codec - News</title>
    <link>https://www.infoq.com</link>
    <description>InfoQ FFmpeg Video Codec News feed</description>
    <item>
      <title>AI-Enabled Security Researchers Discover How a Crafted Video Can Provide Attackers Access to Your PC</title>
      <link>https://www.infoq.com/news/2026/07/pixelsmash-vulnerability/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=FFmpeg+Video+Codec-news</link>
      <description>&lt;img src="https://res.infoq.com/news/2026/07/pixelsmash-vulnerability/en/headerimage/generatedHeaderImage-1785042241189.jpg"/&gt;&lt;p&gt;JFrog Security Research revealed "PixelSmash," a vulnerability in the FFmpeg media framework, allowing for Remote Code Execution and Denial of Service attacks. Present for sixteen years, it affects numerous applications using the MagicYUV decoder. Exploitation requires only a crafted media file. Users are advised to check for the vulnerability and apply patches or disable the decoder if necessary.&lt;/p&gt; &lt;i&gt;By Olimpiu Pop&lt;/i&gt;</description>
      <category>Streaming Video</category>
      <category>Video Codec</category>
      <category>FFmpeg Video Codec</category>
      <category>Security Vulnerabilities</category>
      <category>Security</category>
      <category>Development</category>
      <category>DevOps</category>
      <category>news</category>
      <pubDate>Sun, 26 Jul 2026 09:09:00 GMT</pubDate>
      <guid>https://www.infoq.com/news/2026/07/pixelsmash-vulnerability/?utm_campaign=infoq_content&amp;utm_source=infoq&amp;utm_medium=feed&amp;utm_term=FFmpeg+Video+Codec-news</guid>
      <dc:creator>Olimpiu Pop</dc:creator>
      <dc:date>2026-07-26T09:09:00Z</dc:date>
      <dc:identifier>/news/2026/07/pixelsmash-vulnerability/en</dc:identifier>
    </item>
  </channel>
</rss>
