Ffmpeg

Ffmpeg

493 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.77%
  • Veröffentlicht 07.12.2013 21:55:09
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Off-by-one error in the adpcm_decode_frame function in libavcodec/adpcm.c in FFmpeg before 1.0.4 allows remote attackers to have an unspecified impact via crafted DK4 data, which triggers an out-of-bounds array access.

  • EPSS 0.88%
  • Veröffentlicht 07.12.2013 21:55:09
  • Zuletzt bearbeitet 29.04.2026 01:13:23

libavcodec/alsdec.c in FFmpeg before 1.0.4 allows remote attackers to have an unspecified impact via a crafted block length, which triggers an out-of-bounds write.

  • EPSS 0.94%
  • Veröffentlicht 07.12.2013 21:55:09
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Array index error in the qdm2_decode_super_block function in libavcodec/qdm2.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted QDM2 data, which triggers an out-of-bounds array access.

  • EPSS 0.71%
  • Veröffentlicht 07.12.2013 21:55:09
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The ff_id3v2_parse function in libavformat/id3v2.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via ID3v2 header data, which triggers an out-of-bounds array access.

  • EPSS 0.71%
  • Veröffentlicht 07.12.2013 21:55:09
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The decode_init function in libavcodec/huffyuv.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via a crafted width in huffyuv data with the predictor set to median and the colorspace set to YUV422P, which triggers an out-...

  • EPSS 0.94%
  • Veröffentlicht 07.12.2013 21:55:09
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The roq_decode_init function in libavcodec/roqvideodec.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via a crafted (1) width or (2) height dimension that is not a multiple of sixteen in id RoQ video data.

  • EPSS 0.94%
  • Veröffentlicht 07.12.2013 21:55:09
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The decode_slice_header function in libavcodec/h264.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted H.264 data, which triggers an out-of-bounds array access.

  • EPSS 0.54%
  • Veröffentlicht 07.12.2013 21:55:09
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The decode_frame function in libavcodec/eamad.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted Electronic Arts Madcow video data, which triggers an out-of-bounds array access.

  • EPSS 0.84%
  • Veröffentlicht 07.12.2013 21:55:09
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The parse_picture_segment function in libavcodec/pgssubdec.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted RLE data, which triggers an out-of-bounds array access.

  • EPSS 0.71%
  • Veröffentlicht 07.12.2013 21:55:09
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The wavpack_decode_frame function in libavcodec/wavpack.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted WavPack data, which triggers an out-of-bounds array access, possibly due to an off-by-one error.