Ffmpeg

Ffmpeg

548 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.64%
  • Veröffentlicht 09.12.2013 16:36:48
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The read_header function in libavcodec/ffv1dec.c in FFmpeg before 2.1 does not prevent changes to global parameters, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via...

Exploit
  • EPSS 1.64%
  • Veröffentlicht 09.12.2013 16:36:48
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The get_siz function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not prevent attempts to use non-zero image offsets, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other ...

Exploit
  • EPSS 1.64%
  • Veröffentlicht 09.12.2013 16:36:48
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The g2m_init_buffers function in libavcodec/g2meet.c in FFmpeg before 2.1 uses an incorrect ordering of arithmetic operations, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other ...

Exploit
  • EPSS 1.73%
  • Veröffentlicht 09.12.2013 16:36:48
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Integer signedness error in the add_bytes_l2_c function in libavcodec/pngdsp.c in FFmpeg before 2.1 allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted PNG data.

Exploit
  • EPSS 1.64%
  • Veröffentlicht 09.12.2013 16:36:47
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The decode_slice_header function in libavcodec/h264.c in FFmpeg before 2.1 incorrectly relies on a certain droppable field, which allows remote attackers to cause a denial of service (deadlock) or possibly have unspecified other impact via crafted H....

Exploit
  • EPSS 1.64%
  • Veröffentlicht 09.12.2013 16:36:47
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The rpza_decode_stream function in libavcodec/rpza.c in FFmpeg before 2.1 does not properly maintain a pointer to pixel data, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other i...

  • EPSS 3.32%
  • Veröffentlicht 09.12.2013 16:36:43
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Buffer overflow in FFmpeg before 0.5.6, 0.6.x before 0.6.4, 0.7.x before 0.7.8, and 0.8.x before 0.8.8 allows remote attackers to execute arbitrary code via unspecified vectors.

  • EPSS 2.04%
  • Veröffentlicht 09.12.2013 16:36:25
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The dirac_decode_data_unit function in libavcodec/diracdec.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impact via a crafted value in the reference pictures number.

  • EPSS 2.04%
  • Veröffentlicht 09.12.2013 16:36:09
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The dirac_unpack_idwt_params function in libavcodec/diracdec.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impact via crafted Dirac data.

  • EPSS 5.72%
  • Veröffentlicht 09.12.2013 16:35:44
  • Zuletzt bearbeitet 29.04.2026 01:13:23

The ff_h264_decode_sei function in libavcodec/h264_sei.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impact via crafted Supplemental enhancement information (SEI) data, which triggers an infinite loop.