CVE-2011-1931
- EPSS 2.23%
- Veröffentlicht 07.07.2011 21:55:02
- Zuletzt bearbeitet 16.06.2026 23:30:25
sp5xdec.c in the Sunplus SP5X JPEG decoder in libavcodec in FFmpeg before 0.6.3 and libav through 0.6.2, as used in VideoLAN VLC media player 1.1.9 and earlier and other products, performs a write operation outside the bounds of an unspecified array,...
CVE-2011-2161
- EPSS 1.23%
- Veröffentlicht 20.05.2011 22:55:06
- Zuletzt bearbeitet 16.06.2026 23:30:49
The ape_read_header function in ape.c in libavformat in FFmpeg before 0.5.4, as used in MPlayer, VideoLAN VLC media player, and other products, allows remote attackers to cause a denial of service (application crash) via an APE (aka Monkey's Audio) f...
- EPSS 2.32%
- Veröffentlicht 20.05.2011 22:55:06
- Zuletzt bearbeitet 16.06.2026 23:30:50
Multiple unspecified vulnerabilities in FFmpeg 0.4.x through 0.6.x, as used in MPlayer 1.0 and other products, in Mandriva Linux 2009.0, 2010.0, and 2010.1; Corporate Server 4.0 (aka CS4.0); and Mandriva Enterprise Server 5 (aka MES5) have unknown im...
CVE-2011-2160
- EPSS 1.7%
- Veröffentlicht 20.05.2011 22:55:05
- Zuletzt bearbeitet 16.06.2026 23:30:49
The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an unspecified impact via a crafted VC-1 file, a related issue to CVE-201...
CVE-2010-3908
- EPSS 2.97%
- Veröffentlicht 20.05.2011 22:55:02
- Zuletzt bearbeitet 16.06.2026 23:23:48
FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a malformed WMV file.
CVE-2011-0722
- EPSS 4.23%
- Veröffentlicht 20.05.2011 22:55:02
- Zuletzt bearbeitet 16.06.2026 23:27:57
FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a malformed RealMedia file.
CVE-2011-0723
- EPSS 4.43%
- Veröffentlicht 20.05.2011 22:55:02
- Zuletzt bearbeitet 16.06.2026 23:27:57
FFmpeg 0.5.x, as used in MPlayer and other products, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed VC-1 file.
CVE-2010-4704
- EPSS 3.01%
- Veröffentlicht 22.01.2011 22:00:04
- Zuletzt bearbeitet 16.06.2026 23:25:22
libavcodec/vorbis_dec.c in the Vorbis decoder in FFmpeg 0.6.1 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted .ogg file, related to the vorbis_floor0_decode function. NOTE: this might overlap CVE-20...
CVE-2010-4705
- EPSS 1.32%
- Veröffentlicht 22.01.2011 22:00:04
- Zuletzt bearbeitet 16.06.2026 23:25:23
Integer overflow in the vorbis_residue_decode_internal function in libavcodec/vorbis_dec.c in the Vorbis decoder in FFmpeg, possibly 0.6, has unspecified impact and remote attack vectors, related to the sizes of certain integer data types. NOTE: thi...
CVE-2010-3429
- EPSS 4.18%
- Veröffentlicht 30.09.2010 15:00:03
- Zuletzt bearbeitet 16.06.2026 23:22:45
flicvideo.c in libavcodec 0.6 and earlier in FFmpeg, as used in MPlayer and other products, allows remote attackers to execute arbitrary code via a crafted flic file, related to an "arbitrary offset dereference vulnerability."