cbs_jpeg_split_fragment in libavcodec/cbs_jpeg.c in FFmpeg 4.2.2 has a heap-based buffer overflow during JPEG_MARKER_SOS handling because of a missing length check. CREATE(Triage):(User=admin) [CVE-2020-12284|https://nvd.nist.gov/vuln/detail/CVE-2020-12284]