CVE-2024-35367
- EPSS 0.14%
- Veröffentlicht 29.11.2024 20:15:19
- Zuletzt bearbeitet 03.11.2025 21:16:11
FFmpeg n6.1.1 has an Out-of-bounds Read via libavcodec/ppc/vp8dsp_altivec.c, static const vec_s8 h_subpel_filters_outer
CVE-2024-36615
- EPSS 0.09%
- Veröffentlicht 29.11.2024 19:15:07
- Zuletzt bearbeitet 03.06.2025 16:05:03
FFmpeg n7.0 has a race condition vulnerability in the VP9 decoder. This could lead to a data race if video encoding parameters were being exported, as the side data would be attached in the decoder thread while being read in the output thread.
CVE-2024-36616
- EPSS 0.07%
- Veröffentlicht 29.11.2024 19:15:07
- Zuletzt bearbeitet 03.06.2025 16:04:30
An integer overflow in the component /libavformat/westwood_vqa.c of FFmpeg n6.1.1 allows attackers to cause a denial of service in the application via a crafted VQA file.
CVE-2024-36617
- EPSS 0.02%
- Veröffentlicht 29.11.2024 18:15:07
- Zuletzt bearbeitet 03.06.2025 18:06:03
FFmpeg n6.1.1 has an integer overflow vulnerability in the FFmpeg CAF decoder.
CVE-2024-36618
- EPSS 0.03%
- Veröffentlicht 29.11.2024 18:15:07
- Zuletzt bearbeitet 03.11.2025 21:16:12
FFmpeg n6.1.1 has a vulnerability in the AVI demuxer of the libavformat library which allows for an integer overflow, potentially resulting in a denial-of-service (DoS) condition.
CVE-2024-35369
- EPSS 0.03%
- Veröffentlicht 29.11.2024 17:15:07
- Zuletzt bearbeitet 03.06.2025 16:06:20
In FFmpeg version n6.1.1, specifically within the avcodec/speexdec.c module, a potential security vulnerability exists due to insufficient validation of certain parameters when parsing Speex codec extradata. This vulnerability could lead to integer o...
CVE-2024-36619
- EPSS 0.04%
- Veröffentlicht 29.11.2024 17:15:07
- Zuletzt bearbeitet 03.06.2025 16:06:04
FFmpeg n6.1.1 has a vulnerability in the WAVARC decoder of the libavcodec library which allows for an integer overflow when handling certain block types, leading to a denial-of-service (DoS) condition.
CVE-2024-7272
- EPSS 0.2%
- Veröffentlicht 12.08.2024 13:38:40
- Zuletzt bearbeitet 13.08.2024 15:16:23
A vulnerability, which was classified as critical, was found in FFmpeg up to 5.1.5. This affects the function fill_audiodata of the file /libswresample/swresample.c. The manipulation leads to heap-based buffer overflow. It is possible to initiate the...
CVE-2024-7055
- EPSS 0.13%
- Veröffentlicht 06.08.2024 06:15:36
- Zuletzt bearbeitet 03.11.2025 23:17:31
A vulnerability was found in FFmpeg up to 7.0.1. It has been classified as critical. This affects the function pnm_decode_frame in the library /libavcodec/pnmdec.c. The manipulation leads to heap-based buffer overflow. It is possible to initiate the ...
CVE-2024-32228
- EPSS 0.37%
- Veröffentlicht 01.07.2024 21:15:03
- Zuletzt bearbeitet 03.06.2025 15:33:22
FFmpeg 7.0 is vulnerable to Buffer Overflow. There is a SEGV at libavcodec/hevcdec.c:2947:22 in hevc_frame_end.