CVE-2011-4031
- EPSS 2.79%
- Veröffentlicht 09.05.2012 10:33:14
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer underflow in the asfrtp_parse_packet function in libavformat/rtpdec_asf.c in FFmpeg before 0.8.3 allows remote attackers to execute arbitrary code via a crafted ASF packet.
CVE-2011-3362
- EPSS 3.74%
- Veröffentlicht 02.10.2011 20:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer signedness error in the decode_residual_block function in cavsdec.c in libavcodec in FFmpeg before 0.7.3 and 0.8.x before 0.8.2, and libav through 0.7.1, allows remote attackers to cause a denial of service (memory corruption and application ...
- EPSS 1.38%
- Veröffentlicht 02.10.2011 20:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
cavsdec.c in libavcodec in FFmpeg before 0.7.4 and 0.8.x before 0.8.3 allows remote attackers to cause a denial of service (incorrect write operation and application crash) via an invalid bitstream in a Chinese AVS video (aka CAVS) file, related to t...
- EPSS 1.38%
- Veröffentlicht 02.10.2011 20:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer signedness error in the decode_residual_inter function in cavsdec.c in libavcodec in FFmpeg before 0.7.4 and 0.8.x before 0.8.3 allows remote attackers to cause a denial of service (incorrect write operation and application crash) via an inva...
CVE-2011-3504
- EPSS 4.73%
- Veröffentlicht 29.09.2011 00:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
The Matroska format decoder in FFmpeg before 0.8.3 does not properly allocate memory, which allows remote attackers to execute arbitrary code via a crafted file.
CVE-2011-1931
- EPSS 2.34%
- Veröffentlicht 07.07.2011 21:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
sp5xdec.c in the Sunplus SP5X JPEG decoder in libavcodec in FFmpeg before 0.6.3 and libav through 0.6.2, as used in VideoLAN VLC media player 1.1.9 and earlier and other products, performs a write operation outside the bounds of an unspecified array,...
CVE-2011-2161
- EPSS 0.47%
- Veröffentlicht 20.05.2011 22:55:06
- Zuletzt bearbeitet 29.04.2026 01:13:23
The ape_read_header function in ape.c in libavformat in FFmpeg before 0.5.4, as used in MPlayer, VideoLAN VLC media player, and other products, allows remote attackers to cause a denial of service (application crash) via an APE (aka Monkey's Audio) f...
- EPSS 0.99%
- Veröffentlicht 20.05.2011 22:55:06
- Zuletzt bearbeitet 29.04.2026 01:13:23
Multiple unspecified vulnerabilities in FFmpeg 0.4.x through 0.6.x, as used in MPlayer 1.0 and other products, in Mandriva Linux 2009.0, 2010.0, and 2010.1; Corporate Server 4.0 (aka CS4.0); and Mandriva Enterprise Server 5 (aka MES5) have unknown im...
CVE-2011-2160
- EPSS 0.75%
- Veröffentlicht 20.05.2011 22:55:05
- Zuletzt bearbeitet 29.04.2026 01:13:23
The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an unspecified impact via a crafted VC-1 file, a related issue to CVE-201...
CVE-2010-3908
- EPSS 2.3%
- Veröffentlicht 20.05.2011 22:55:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a malformed WMV file.