CVE-2014-2097
- EPSS 1.23%
- Veröffentlicht 02.03.2014 04:57:25
- Zuletzt bearbeitet 29.04.2026 01:13:23
The tak_decode_frame function in libavcodec/takdec.c in FFmpeg before 2.1.4 does not properly validate a certain bits-per-sample value, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecifi...
CVE-2014-2098
- EPSS 1.78%
- Veröffentlicht 02.03.2014 04:57:25
- Zuletzt bearbeitet 29.04.2026 01:13:23
libavcodec/wmalosslessdec.c in FFmpeg before 2.1.4 uses an incorrect data-structure size for certain coefficients, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via crafted WM...
CVE-2014-2099
- EPSS 1.24%
- Veröffentlicht 02.03.2014 04:57:25
- Zuletzt bearbeitet 29.04.2026 01:13:23
The msrle_decode_frame function in libavcodec/msrle.c in FFmpeg before 2.1.4 does not properly calculate line sizes, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via...
CVE-2014-2263
- EPSS 2.27%
- Veröffentlicht 01.03.2014 00:55:05
- Zuletzt bearbeitet 29.04.2026 01:13:23
The mpegts_write_pmt function in the MPEG2 transport stream (aka DVB) muxer (libavformat/mpegtsenc.c) in FFmpeg, possibly 2.1 and earlier, allows remote attackers to have unspecified impact and vectors, which trigger an out-of-bounds write.
CVE-2012-6615
- EPSS 2.27%
- Veröffentlicht 24.12.2013 20:55:04
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ff_ass_split_override_codes function in libavcodec/ass_split.c in FFmpeg before 1.0.2 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a subtitle dialog without text.
- EPSS 1.67%
- Veröffentlicht 24.12.2013 20:55:04
- Zuletzt bearbeitet 29.04.2026 01:13:23
The mov_text_decode_frame function in libavcodec/movtextdec.c in FFmpeg before 1.0.2 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via crafted 3GPP TS 26.245 data.
CVE-2012-6617
- EPSS 2.26%
- Veröffentlicht 24.12.2013 20:55:04
- Zuletzt bearbeitet 29.04.2026 01:13:23
The prepare_sdp_description function in ffserver.c in FFmpeg before 1.0.2 allows remote attackers to cause a denial of service (crash) via vectors related to the rtp format.
CVE-2012-6618
- EPSS 1.58%
- Veröffentlicht 24.12.2013 20:55:04
- Zuletzt bearbeitet 29.04.2026 01:13:23
The av_probe_input_buffer function in libavformat/utils.c in FFmpeg before 1.0.2, when running with certain -probesize values, allows remote attackers to cause a denial of service (crash) via a crafted MP3 file, possibly related to frame size or lack...
- EPSS 1.28%
- Veröffentlicht 24.12.2013 19:55:06
- Zuletzt bearbeitet 29.04.2026 01:13:23
libavcodec/h264.c in FFmpeg before 0.11.4 allows remote attackers to cause a denial of service (crash) via vectors related to alternating bit depths in H.264 data.
CVE-2013-7021
- EPSS 1.64%
- Veröffentlicht 09.12.2013 16:36:50
- Zuletzt bearbeitet 29.04.2026 01:13:23
The filter_frame function in libavfilter/vf_fps.c in FFmpeg before 2.1 does not properly ensure the availability of FIFO content, which allows remote attackers to cause a denial of service (double free) or possibly have unspecified other impact via c...