Vulnerability index

Browse CVEs

332 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Ffmpeg MEDIUM 6.8
CVE-2011-3952

The decode_init function in kmvc.c in libavcodec in FFmpeg before 0.10 and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6, 0.7.x before 0.7.6, and 0…

Fix: after 0.9.1
Fix from $1,600 2012-08-20
Ffmpeg MEDIUM 6.8
CVE-2012-0851

The ff_h264_decode_seq_parameter_set function in h264_ps.c in libavcodec in FFmpeg before 0.9.1 and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6, …

Fix: after 0.9
Fix from $1,600 2012-08-20
Ffmpeg MEDIUM 6.8
CVE-2012-0852

The adpcm_decode_frame function in adpcm.c in libavcodec in FFmpeg before 0.9.1 and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6, 0.7.x before 0.7…

Fix: after 0.9
Fix from $1,600 2012-08-20
Ffmpeg MEDIUM 6.8
CVE-2012-0853

The decodeTonalComponents function in the Actrac3 codec (atrac3.c) in libavcodec in FFmpeg 0.7.x before 0.7.12, and 0.8.x before 0.8.11; and in Libav…

No fix yet
Fix from $1,600 2012-08-20
Ffmpeg MEDIUM 6.8
CVE-2012-0858

The Shorten codec (shorten.c) in libavcodec in FFmpeg 0.7.x before 0.7.12 and 0.8.x before 0.8.11, and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.…

Mitigation only
Fix from $1,600 2012-08-20
Ffmpeg MEDIUM 6.8
CVE-2012-0859

The render_line function in the vorbis codec (vorbis.c) in libavcodec in FFmpeg before 0.9.1 allows remote attackers to cause a denial of service (ap…

Fix: after 0.9
Fix from $1,600 2012-08-20
Ffmpeg MEDIUM 6.8
CVE-2011-3929

The avpriv_dv_produce_packet function in libavcodec in FFmpeg 0.7.x before 0.7.12 and 0.8.x before 0.8.11 and in Libav 0.5.x before 0.5.9, 0.6.x befo…

Mitigation only
Fix from $1,600 2012-08-20
Ffmpeg MEDIUM 6.8
CVE-2011-4031

Integer underflow in the asfrtp_parse_packet function in libavformat/rtpdec_asf.c in FFmpeg before 0.8.3 allows remote attackers to execute arbitrary…

Fix: 0.8.3+
Fix from $1,600 2012-05-09
Ffmpeg MEDIUM 6.8
CVE-2011-3362

Integer signedness error in the decode_residual_block function in cavsdec.c in libavcodec in FFmpeg before 0.7.3 and 0.8.x before 0.8.2, and libav th…

Fix: after 0.7.2
Fix from $1,600 2011-10-02
Ffmpeg MEDIUM 5.0
CVE-2011-3973

cavsdec.c in libavcodec in FFmpeg before 0.7.4 and 0.8.x before 0.8.3 allows remote attackers to cause a denial of service (incorrect write operation…

Fix: after 0.7.3
Fix from $1,600 2011-10-02
Ffmpeg MEDIUM 5.0
CVE-2011-3974

Integer signedness error in the decode_residual_inter function in cavsdec.c in libavcodec in FFmpeg before 0.7.4 and 0.8.x before 0.8.3 allows remote…

Fix: after 0.7.3
Fix from $1,600 2011-10-02
Ffmpeg HIGH 9.3
CVE-2011-3504EPSS 6%

The Matroska format decoder in FFmpeg before 0.8.3 does not properly allocate memory, which allows remote attackers to execute arbitrary code via a c…

Fix: after 0.8.0
Fix from $1,950 2011-09-29
Ffmpeg MEDIUM 6.8
CVE-2011-1931

sp5xdec.c in the Sunplus SP5X JPEG decoder in libavcodec in FFmpeg before 0.6.3 and libav through 0.6.2, as used in VideoLAN VLC media player 1.1.9 a…

Fix: after 1.1.9
Fix from $1,600 2011-07-07
Ffmpeg HIGH 9.3
CVE-2011-2160

The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allo…

Fix: after 0.5.3
Fix from $1,950 2011-05-20
Ffmpeg MEDIUM 6.8
CVE-2010-3908

FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (memory corruption and application c…

Fix: after 0.5.3
Fix from $1,600 2011-05-20
Ffmpeg MEDIUM 6.8
CVE-2011-0722

FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (heap memory corruption and applicat…

Fix: after 0.5.3
Fix from $1,600 2011-05-20
Ffmpeg MEDIUM 6.8
CVE-2011-0723

FFmpeg 0.5.x, as used in MPlayer and other products, allows remote attackers to cause a denial of service (application crash) or possibly execute arb…

Mitigation only
Fix from $1,600 2011-05-20
Ffmpeg HIGH 9.3
CVE-2010-4705

Integer overflow in the vorbis_residue_decode_internal function in libavcodec/vorbis_dec.c in the Vorbis decoder in FFmpeg, possibly 0.6, has unspeci…

Mitigation only
Fix from $1,950 2011-01-22
Libavcodec MEDIUM 6.8
CVE-2010-3429

flicvideo.c in libavcodec 0.6 and earlier in FFmpeg, as used in MPlayer and other products, allows remote attackers to execute arbitrary code via a c…

Fix: after 1.0
Fix from $1,600 2010-09-30
Ffmpeg HIGH 10.0
CVE-2009-4633EPSS 8%

vorbis_dec.c in FFmpeg 0.5 uses an assignment operator when a comparison operator was intended, which might allow remote attackers to cause a denial …

No fix yet
Fix from $1,950 2010-02-10
Ffmpeg HIGH 10.0
CVE-2009-4634EPSS 7%

Multiple integer underflows in FFmpeg 0.5 allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted file …

No fix yet
Fix from $1,950 2010-02-10
Ffmpeg HIGH 10.0
CVE-2009-4637EPSS 17%

FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors that trigger a stack-…

No fix yet
Fix from $1,950 2010-02-10
Ffmpeg HIGH 9.3
CVE-2009-4631EPSS 5%

Off-by-one error in the VP3 decoder (vp3.c) in FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code vi…

No fix yet
Fix from $1,950 2010-02-10
Ffmpeg HIGH 9.3
CVE-2009-4635EPSS 8%

FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted MOV container with improperly order…

No fix yet
Fix from $1,950 2010-02-10
Ffmpeg MEDIUM 5.8
CVE-2009-4632

oggparsevorbis.c in FFmpeg 0.5 does not properly perform certain pointer arithmetic, which might allow remote attackers to obtain sensitive memory co…

No fix yet
Fix from $1,600 2010-02-10
Ffmpeg HIGH 10.0
CVE-2008-4866

Multiple buffer overflows in libavformat/utils.c in FFmpeg 0.4.9 before r14715, as used by MPlayer, allow context-dependent attackers to have an unkn…

Fix: after 0.4.9
Fix from $1,950 2008-11-01
Ffmpeg HIGH 10.0
CVE-2008-4867

Buffer overflow in libavcodec/dca.c in FFmpeg 0.4.9 before r14917, as used by MPlayer, allows context-dependent attackers to have an unknown impact v…

Fix: after 0.4.9
Fix from $1,950 2008-11-01
Ffmpeg HIGH 10.0
CVE-2008-4868

Unspecified vulnerability in the avcodec_close function in libavcodec/utils.c in FFmpeg 0.4.9 before r14787, as used by MPlayer, has unknown impact a…

Fix: after 0.4.9
Fix from $1,950 2008-11-01
Ffmpeg HIGH 10.0
CVE-2008-4869

FFmpeg 0.4.9, as used by MPlayer, allows context-dependent attackers to cause a denial of service (memory consumption) via unknown vectors, aka a "Tc…

Fix: after 0.4.9
Fix from $1,950 2008-11-01
Ffmpeg HIGH 9.3
CVE-2008-3162EPSS 9%

Stack-based buffer overflow in the str_read_packet function in libavformat/psxstr.c in FFmpeg before r13993 allows remote attackers to cause a denial…

Mitigation only
Fix from $1,950 2008-07-14