CVE-2013-7010
- EPSS 0.94%
- Veröffentlicht 09.12.2013 16:36:48
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple integer signedness errors in libavcodec/dsputil.c in FFmpeg before 2.1 allow remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted data.
CVE-2013-7011
- EPSS 1.41%
- Veröffentlicht 09.12.2013 16:36:48
- Zuletzt bearbeitet 11.04.2025 00:51:21
The read_header function in libavcodec/ffv1dec.c in FFmpeg before 2.1 does not prevent changes to global parameters, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via...
CVE-2013-7012
- EPSS 1.41%
- Veröffentlicht 09.12.2013 16:36:48
- Zuletzt bearbeitet 11.04.2025 00:51:21
The get_siz function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not prevent attempts to use non-zero image offsets, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other ...
CVE-2013-7013
- EPSS 1.2%
- Veröffentlicht 09.12.2013 16:36:48
- Zuletzt bearbeitet 11.04.2025 00:51:21
The g2m_init_buffers function in libavcodec/g2meet.c in FFmpeg before 2.1 uses an incorrect ordering of arithmetic operations, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other ...
CVE-2013-7014
- EPSS 1.38%
- Veröffentlicht 09.12.2013 16:36:48
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer signedness error in the add_bytes_l2_c function in libavcodec/pngdsp.c in FFmpeg before 2.1 allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted PNG data.
CVE-2013-7008
- EPSS 1.41%
- Veröffentlicht 09.12.2013 16:36:47
- Zuletzt bearbeitet 11.04.2025 00:51:21
The decode_slice_header function in libavcodec/h264.c in FFmpeg before 2.1 incorrectly relies on a certain droppable field, which allows remote attackers to cause a denial of service (deadlock) or possibly have unspecified other impact via crafted H....
CVE-2013-7009
- EPSS 1.41%
- Veröffentlicht 09.12.2013 16:36:47
- Zuletzt bearbeitet 11.04.2025 00:51:21
The rpza_decode_stream function in libavcodec/rpza.c in FFmpeg before 2.1 does not properly maintain a pointer to pixel data, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other i...
CVE-2011-4351
- EPSS 2.81%
- Veröffentlicht 09.12.2013 16:36:43
- Zuletzt bearbeitet 11.04.2025 00:51:21
Buffer overflow in FFmpeg before 0.5.6, 0.6.x before 0.6.4, 0.7.x before 0.7.8, and 0.8.x before 0.8.8 allows remote attackers to execute arbitrary code via unspecified vectors.
CVE-2011-3950
- EPSS 0.58%
- Veröffentlicht 09.12.2013 16:36:25
- Zuletzt bearbeitet 11.04.2025 00:51:21
The dirac_decode_data_unit function in libavcodec/diracdec.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impact via a crafted value in the reference pictures number.
CVE-2011-3949
- EPSS 0.58%
- Veröffentlicht 09.12.2013 16:36:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
The dirac_unpack_idwt_params function in libavcodec/diracdec.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impact via crafted Dirac data.