Ffmpeg

Ffmpeg

484 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.5%
  • Published 10.06.2013 03:19:54
  • Last modified 11.04.2025 00:51:21

The format_line function in log.c in libavutil in FFmpeg before 1.2.1 uses inapplicable offset data during a certain category calculation, which allows remote attackers to cause a denial of service (invalid pointer dereference and application crash) ...

  • EPSS 0.88%
  • Published 10.06.2013 03:19:54
  • Last modified 11.04.2025 00:51:21

The mm_decode_inter function in mmvideo.c in libavcodec in FFmpeg before 1.2.1 does not validate the relationship between a horizontal coordinate and a width value, which allows remote attackers to cause a denial of service (out-of-bounds array acces...

  • EPSS 0.46%
  • Published 09.03.2013 11:55:01
  • Last modified 11.04.2025 00:51:21

The iff_read_header function in iff.c in libavformat in FFmpeg through 1.1.3 does not properly handle data sizes for Interchange File Format (IFF) data during operations involving a CMAP chunk or a video codec, which allows remote attackers to cause ...

  • EPSS 0.46%
  • Published 09.03.2013 11:55:01
  • Last modified 11.04.2025 00:51:21

The msrle_decode_8_16_24_32 function in msrledec.c in libavcodec in FFmpeg through 1.1.3 does not properly determine certain end pointers, which allows remote attackers to cause a denial of service (out-of-bounds array access and application crash) o...

  • EPSS 0.46%
  • Published 27.02.2013 16:55:02
  • Last modified 11.04.2025 00:51:21

The avcodec_decode_audio4 function in utils.c in libavcodec in FFmpeg before 1.1.3 does not verify the decoding state before proceeding with certain skip operations, which allows remote attackers to cause a denial of service (out-of-bounds array acce...

  • EPSS 0.62%
  • Published 27.02.2013 16:55:02
  • Last modified 11.04.2025 00:51:21

The ff_h264_decode_seq_parameter_set function in h264_ps.c in libavcodec in FFmpeg before 1.1.3 does not validate the relationship between luma depth and chroma depth, which allows remote attackers to cause a denial of service (out-of-bounds array ac...

  • EPSS 0.6%
  • Published 23.02.2013 21:55:01
  • Last modified 11.04.2025 00:51:21

Buffer overflow in the vorbis_parse_setup_hdr_floors function in the Vorbis decoder in vorbisdec.c in libavcodec in FFmpeg through 1.1.3, as used in Google Chrome before 25.0.1364.97 on Windows and Linux and before 25.0.1364.99 on Mac OS X and other ...

  • EPSS 0.69%
  • Published 05.01.2013 00:55:02
  • Last modified 11.04.2025 00:51:21

The H.263 codec (libavcodec/h263dec.c) in FFmpeg 0.7.x before 0.7.12, 0.8.x before 0.8.11, and unspecified versions before 0.10, and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6, 0.7.x before 0.7.5, and 0.8.x before 0.8.1 has unspecified impact an...

  • EPSS 0.86%
  • Published 10.09.2012 22:55:04
  • Last modified 11.04.2025 00:51:21

Unspecified vulnerability in the decode_frame_mp3on4 function in libavcodec/mpegaudiodec.c in FFmpeg before 0.11 and Libav 0.8.x before 0.8.5 has unknown impact and attack vectors related to a calculation that prevents a frame from being "large enoug...

  • EPSS 0.99%
  • Published 10.09.2012 22:55:04
  • Last modified 11.04.2025 00:51:21

Unspecified vulnerability in the decode_dds1 function in libavcodec/dfa.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 and 0.8.x before 0.8.4, has unknown impact and attack vectors, related to an "out of array write."