CVE-2014-7937
- EPSS 1.83%
- Veröffentlicht 22.01.2015 22:59:18
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple off-by-one errors in libavcodec/vorbisdec.c in FFmpeg before 2.4.2, as used in Google Chrome before 40.0.2214.91, allow remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted Vorb...
CVE-2014-7933
- EPSS 2.8%
- Veröffentlicht 22.01.2015 22:59:14
- Zuletzt bearbeitet 06.05.2026 22:30:45
Use-after-free vulnerability in the matroska_read_seek function in libavformat/matroskadec.c in FFmpeg before 2.5.1, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service or possibly have unspecified other...
CVE-2014-9604
- EPSS 2.4%
- Veröffentlicht 16.01.2015 20:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
libavcodec/utvideodec.c in FFmpeg before 2.5.2 does not check for a zero value of a slice height, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Ut Video d...
CVE-2014-9603
- EPSS 1.97%
- Veröffentlicht 16.01.2015 20:59:01
- Zuletzt bearbeitet 06.05.2026 22:30:45
The vmd_decode function in libavcodec/vmdvideo.c in FFmpeg before 2.5.2 does not validate the relationship between a certain length value and the frame width, which allows remote attackers to cause a denial of service (out-of-bounds array access) or ...
CVE-2014-9602
- EPSS 1.99%
- Veröffentlicht 16.01.2015 20:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
libavcodec/xface.h in FFmpeg before 2.5.2 establishes certain digits and words array dimensions that do not satisfy a required mathematical relationship, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possi...
- EPSS 2.43%
- Veröffentlicht 09.12.2014 23:59:18
- Zuletzt bearbeitet 06.05.2026 22:30:45
The ff_hevc_decode_nal_sps function in libavcodec/hevc_ps.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted .bit file.
CVE-2014-9318
- EPSS 2.22%
- Veröffentlicht 09.12.2014 23:59:17
- Zuletzt bearbeitet 06.05.2026 22:30:45
The raw_decode function in libavcodec/rawdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds heap access) and possibly have other unspecified impact via a craft...
CVE-2014-9317
- EPSS 2.41%
- Veröffentlicht 09.12.2014 23:59:16
- Zuletzt bearbeitet 06.05.2026 22:30:45
The decode_ihdr_chunk function in libavcodec/pngdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds heap access) and possibly have other unspecified impact via ...
CVE-2014-9316
- EPSS 1.55%
- Veröffentlicht 09.12.2014 23:59:14
- Zuletzt bearbeitet 06.05.2026 22:30:45
The mjpeg_decode_app function in libavcodec/mjpegdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds heap access) and possibly have other unspecified impact via...
CVE-2014-8545
- EPSS 3.08%
- Veröffentlicht 05.11.2014 11:55:08
- Zuletzt bearbeitet 06.05.2026 22:30:45
libavcodec/pngdec.c in FFmpeg before 2.4.2 accepts the monochrome-black format without verifying that the bits-per-pixel value is 1, which allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other ...