CVE-2014-9676
- EPSS 1.61%
- Veröffentlicht 28.02.2015 01:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The seg_write_packet function in libavformat/segment.c in ffmpeg 2.1.4 and earlier does not free the correct memory location, which allows remote attackers to cause a denial of service ("invalid memory handler") and possibly execute arbitrary code vi...
CVE-2014-7937
- EPSS 2.21%
- Veröffentlicht 22.01.2015 22:59:18
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple off-by-one errors in libavcodec/vorbisdec.c in FFmpeg before 2.4.2, as used in Google Chrome before 40.0.2214.91, allow remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted Vorb...
CVE-2014-7933
- EPSS 5.94%
- Veröffentlicht 22.01.2015 22:59:14
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in the matroska_read_seek function in libavformat/matroskadec.c in FFmpeg before 2.5.1, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service or possibly have unspecified other...
CVE-2014-9604
- EPSS 0.65%
- Veröffentlicht 16.01.2015 20:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
libavcodec/utvideodec.c in FFmpeg before 2.5.2 does not check for a zero value of a slice height, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Ut Video d...
CVE-2014-9603
- EPSS 0.91%
- Veröffentlicht 16.01.2015 20:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
The vmd_decode function in libavcodec/vmdvideo.c in FFmpeg before 2.5.2 does not validate the relationship between a certain length value and the frame width, which allows remote attackers to cause a denial of service (out-of-bounds array access) or ...
CVE-2014-9602
- EPSS 0.46%
- Veröffentlicht 16.01.2015 20:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
libavcodec/xface.h in FFmpeg before 2.5.2 establishes certain digits and words array dimensions that do not satisfy a required mathematical relationship, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possi...
- EPSS 0.54%
- Veröffentlicht 09.12.2014 23:59:18
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ff_hevc_decode_nal_sps function in libavcodec/hevc_ps.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted .bit file.
CVE-2014-9318
- EPSS 1.02%
- Veröffentlicht 09.12.2014 23:59:17
- Zuletzt bearbeitet 12.04.2025 10:46:40
The raw_decode function in libavcodec/rawdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds heap access) and possibly have other unspecified impact via a craft...
CVE-2014-9317
- EPSS 0.71%
- Veröffentlicht 09.12.2014 23:59:16
- Zuletzt bearbeitet 12.04.2025 10:46:40
The decode_ihdr_chunk function in libavcodec/pngdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds heap access) and possibly have other unspecified impact via ...
CVE-2014-9316
- EPSS 0.52%
- Veröffentlicht 09.12.2014 23:59:14
- Zuletzt bearbeitet 12.04.2025 10:46:40
The mjpeg_decode_app function in libavcodec/mjpegdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds heap access) and possibly have other unspecified impact via...