CVE-2011-4031
- EPSS 2.32%
- Veröffentlicht 09.05.2012 10:33:14
- Zuletzt bearbeitet 16.06.2026 23:34:19
Integer underflow in the asfrtp_parse_packet function in libavformat/rtpdec_asf.c in FFmpeg before 0.8.3 allows remote attackers to execute arbitrary code via a crafted ASF packet.
CVE-2011-3362
- EPSS 3.41%
- Veröffentlicht 02.10.2011 20:55:01
- Zuletzt bearbeitet 16.06.2026 23:33:09
Integer signedness error in the decode_residual_block function in cavsdec.c in libavcodec in FFmpeg before 0.7.3 and 0.8.x before 0.8.2, and libav through 0.7.1, allows remote attackers to cause a denial of service (memory corruption and application ...
- EPSS 2.5%
- Veröffentlicht 02.10.2011 20:55:01
- Zuletzt bearbeitet 16.06.2026 23:34:14
cavsdec.c in libavcodec in FFmpeg before 0.7.4 and 0.8.x before 0.8.3 allows remote attackers to cause a denial of service (incorrect write operation and application crash) via an invalid bitstream in a Chinese AVS video (aka CAVS) file, related to t...
- EPSS 2.5%
- Veröffentlicht 02.10.2011 20:55:01
- Zuletzt bearbeitet 16.06.2026 23:34:14
Integer signedness error in the decode_residual_inter function in cavsdec.c in libavcodec in FFmpeg before 0.7.4 and 0.8.x before 0.8.3 allows remote attackers to cause a denial of service (incorrect write operation and application crash) via an inva...
CVE-2011-3504
- EPSS 5.85%
- Veröffentlicht 29.09.2011 00:55:02
- Zuletzt bearbeitet 16.06.2026 23:33:23
The Matroska format decoder in FFmpeg before 0.8.3 does not properly allocate memory, which allows remote attackers to execute arbitrary code via a crafted file.
CVE-2011-1931
- EPSS 2.23%
- Veröffentlicht 07.07.2011 21:55:02
- Zuletzt bearbeitet 16.06.2026 23:30:25
sp5xdec.c in the Sunplus SP5X JPEG decoder in libavcodec in FFmpeg before 0.6.3 and libav through 0.6.2, as used in VideoLAN VLC media player 1.1.9 and earlier and other products, performs a write operation outside the bounds of an unspecified array,...
CVE-2011-2161
- EPSS 1.23%
- Veröffentlicht 20.05.2011 22:55:06
- Zuletzt bearbeitet 16.06.2026 23:30:49
The ape_read_header function in ape.c in libavformat in FFmpeg before 0.5.4, as used in MPlayer, VideoLAN VLC media player, and other products, allows remote attackers to cause a denial of service (application crash) via an APE (aka Monkey's Audio) f...
- EPSS 2.32%
- Veröffentlicht 20.05.2011 22:55:06
- Zuletzt bearbeitet 16.06.2026 23:30:50
Multiple unspecified vulnerabilities in FFmpeg 0.4.x through 0.6.x, as used in MPlayer 1.0 and other products, in Mandriva Linux 2009.0, 2010.0, and 2010.1; Corporate Server 4.0 (aka CS4.0); and Mandriva Enterprise Server 5 (aka MES5) have unknown im...
CVE-2011-2160
- EPSS 1.7%
- Veröffentlicht 20.05.2011 22:55:05
- Zuletzt bearbeitet 16.06.2026 23:30:49
The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an unspecified impact via a crafted VC-1 file, a related issue to CVE-201...
CVE-2010-3908
- EPSS 2.97%
- Veröffentlicht 20.05.2011 22:55:02
- Zuletzt bearbeitet 16.06.2026 23:23:48
FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a malformed WMV file.