A vulnerability marked as critical has been reported in FFmpeg up to 7.x. Affected by this vulnerability is the function dwa_uncompress of the component OpenEXR File Decoder. Performing manipulation results in out-of-bounds write.

This vulnerability is identified as CVE-2025-59733. The attack can be initiated remotely. There is not any exploit available.

It is suggested to upgrade the affected component.