CVE-2011-3504
- EPSS 3.68%
- Veröffentlicht 29.09.2011 00:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Matroska format decoder in FFmpeg before 0.8.3 does not properly allocate memory, which allows remote attackers to execute arbitrary code via a crafted file.
CVE-2011-1931
- EPSS 2.34%
- Veröffentlicht 07.07.2011 21:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
sp5xdec.c in the Sunplus SP5X JPEG decoder in libavcodec in FFmpeg before 0.6.3 and libav through 0.6.2, as used in VideoLAN VLC media player 1.1.9 and earlier and other products, performs a write operation outside the bounds of an unspecified array,...
CVE-2011-2161
- EPSS 0.47%
- Veröffentlicht 20.05.2011 22:55:06
- Zuletzt bearbeitet 11.04.2025 00:51:21
The ape_read_header function in ape.c in libavformat in FFmpeg before 0.5.4, as used in MPlayer, VideoLAN VLC media player, and other products, allows remote attackers to cause a denial of service (application crash) via an APE (aka Monkey's Audio) f...
- EPSS 0.99%
- Veröffentlicht 20.05.2011 22:55:06
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in FFmpeg 0.4.x through 0.6.x, as used in MPlayer 1.0 and other products, in Mandriva Linux 2009.0, 2010.0, and 2010.1; Corporate Server 4.0 (aka CS4.0); and Mandriva Enterprise Server 5 (aka MES5) have unknown im...
CVE-2011-2160
- EPSS 0.75%
- Veröffentlicht 20.05.2011 22:55:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an unspecified impact via a crafted VC-1 file, a related issue to CVE-201...
CVE-2010-3908
- EPSS 2.3%
- Veröffentlicht 20.05.2011 22:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a malformed WMV file.
CVE-2011-0722
- EPSS 0.89%
- Veröffentlicht 20.05.2011 22:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a malformed RealMedia file.
CVE-2011-0723
- EPSS 1.01%
- Veröffentlicht 20.05.2011 22:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
FFmpeg 0.5.x, as used in MPlayer and other products, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed VC-1 file.
CVE-2010-4704
- EPSS 4.12%
- Veröffentlicht 22.01.2011 22:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
libavcodec/vorbis_dec.c in the Vorbis decoder in FFmpeg 0.6.1 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted .ogg file, related to the vorbis_floor0_decode function. NOTE: this might overlap CVE-20...
CVE-2010-4705
- EPSS 0.49%
- Veröffentlicht 22.01.2011 22:00:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in the vorbis_residue_decode_internal function in libavcodec/vorbis_dec.c in the Vorbis decoder in FFmpeg, possibly 0.6, has unspecified impact and remote attack vectors, related to the sizes of certain integer data types. NOTE: thi...