Ffmpeg

Ffmpeg

493 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.24%
  • Veröffentlicht 23.12.2016 05:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The gsm_parse function in libavcodec/gsm_parser.c in FFmpeg before 3.1.5 allows remote attackers to cause a denial of service (assert fault) via a crafted AVI file.

  • EPSS 0.13%
  • Veröffentlicht 23.12.2016 05:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The che_configure function in libavcodec/aacdec_template.c in FFmpeg before 3.2.1 allows remote attackers to cause a denial of service (allocation of huge memory, and being killed by the OS) via a crafted MOV file.

  • EPSS 2.51%
  • Veröffentlicht 16.06.2016 18:59:08
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The mov_read_dref function in libavformat/mov.c in Libav before 11.7 and FFmpeg before 0.11 allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via the entries value in a dref box in an MP4 file.

  • EPSS 1.01%
  • Veröffentlicht 12.02.2016 05:59:04
  • Zuletzt bearbeitet 06.05.2026 22:30:45

libavcodec/gif.c in FFmpeg before 2.8.6 does not properly calculate a buffer size, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via a crafted .tga file, related to t...

  • EPSS 1.16%
  • Veröffentlicht 12.02.2016 05:59:03
  • Zuletzt bearbeitet 06.05.2026 22:30:45

libavcodec/tiff.c in FFmpeg before 2.8.6 does not properly validate RowsPerStrip values and YCbCr chrominance subsampling factors, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified ot...

  • EPSS 1.07%
  • Veröffentlicht 12.02.2016 05:59:02
  • Zuletzt bearbeitet 06.05.2026 22:30:45

libswscale/swscale_unscaled.c in FFmpeg before 2.8.6 does not validate certain height values, which allows remote attackers to cause a denial of service (out-of-bounds array read access) or possibly have unspecified other impact via a crafted .cine f...

  • EPSS 1.07%
  • Veröffentlicht 12.02.2016 05:59:01
  • Zuletzt bearbeitet 06.05.2026 22:30:45

libavcodec/pngenc.c in FFmpeg before 2.8.5 uses incorrect line sizes in certain row calculations, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via a crafted .avi fil...

  • EPSS 1.07%
  • Veröffentlicht 12.02.2016 05:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Integer overflow in the asf_write_packet function in libavformat/asfenc.c in FFmpeg before 2.8.5 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted PTS (aka presentation timestamp) value in a ...

  • EPSS 0.41%
  • Veröffentlicht 03.02.2016 14:59:00
  • Zuletzt bearbeitet 06.05.2026 22:30:45

The jpeg2000_decode_tile function in libavcodec/jpeg2000dec.c in FFmpeg before 2.8.6 allows remote attackers to cause a denial of service (out-of-bounds array read access) via crafted JPEG 2000 data.

Exploit
  • EPSS 52.1%
  • Veröffentlicht 15.01.2016 03:59:23
  • Zuletzt bearbeitet 06.05.2026 22:30:45

FFmpeg 2.x allows remote attackers to conduct cross-origin attacks and read arbitrary files by using the concat protocol in an HTTP Live Streaming (HLS) M3U8 file, leading to an external HTTP request in which the URL string contains the first line of...