Search CVE reports
1 – 10 of 18 results
Some fixes available 4 of 7
flicvideo.c in libavcodec 0.6 and earlier in FFmpeg, as used in MPlayer and other products, allows remote attackers to execute arbitrary code via a crafted flic file, related to an “arbitrary offset dereference vulnerability.”
2 affected packages
ffmpeg, ffmpeg-debian
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-debian | — | — | — | — |
Some fixes available 4 of 7
Array index error in vorbis_dec.c in FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted Vorbis file that triggers an out-of-bounds read.
2 affected packages
ffmpeg, ffmpeg-debian
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-debian | — | — | — | — |
Some fixes available 4 of 7
The av_rescale_rnd function in the AVI demuxer in FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) via a crafted AVI file that triggers a divide-by-zero error.
2 affected packages
ffmpeg, ffmpeg-debian
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-debian | — | — | — | — |
Integer overflow in FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.
2 affected packages
ffmpeg, ffmpeg-debian
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-debian | — | — | — | — |
Some fixes available 4 of 7
FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors that trigger a stack-based buffer overflow.
2 affected packages
ffmpeg, ffmpeg-debian
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-debian | — | — | — | — |
FFmpeg 0.5 allows remote attackers to cause a denial of service (hang) via a crafted file that triggers an infinite loop.
2 affected packages
ffmpeg, ffmpeg-debian
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-debian | — | — | — | — |
FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted MOV container with improperly ordered tags that cause (1) mov.c and (2) utils.c to use inconsistent codec types and...
2 affected packages
ffmpeg, ffmpeg-debian
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-debian | — | — | — | — |
Some fixes available 4 of 7
Multiple integer underflows in FFmpeg 0.5 allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted file that (1) bypasses a validation check in vorbis_dec.c and triggers a wraparound of...
2 affected packages
ffmpeg, ffmpeg-debian
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-debian | — | — | — | — |
Some fixes available 4 of 7
vorbis_dec.c in FFmpeg 0.5 uses an assignment operator when a comparison operator was intended, which might allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted file that modifies a...
2 affected packages
ffmpeg, ffmpeg-debian
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-debian | — | — | — | — |
Some fixes available 3 of 6
oggparsevorbis.c in FFmpeg 0.5 does not properly perform certain pointer arithmetic, which might allow remote attackers to obtain sensitive memory contents and cause a denial of service via a crafted file that triggers...
2 affected packages
ffmpeg, ffmpeg-debian
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-debian | — | — | — | — |