Show filters
433 Total Results
Displaying 111-120 of 433
Sort by:
Attacker Value
Unknown

CVE-2020-12284

Disclosure Date: April 28, 2020 (last updated February 21, 2025)
cbs_jpeg_split_fragment in libavcodec/cbs_jpeg.c in FFmpeg 4.1 and 4.2.2 has a heap-based buffer overflow during JPEG_MARKER_SOS handling because of a missing length check.
Attacker Value
Unknown

CVE-2014-4610

Disclosure Date: January 14, 2020 (last updated February 21, 2025)
Integer overflow in the get_len function in libavutil/lzo.c in FFmpeg before 0.10.14, 1.1.x before 1.1.12, 1.2.x before 1.2.7, 2.0.x before 2.0.5, 2.1.x before 2.1.5, and 2.2.x before 2.2.4 allows remote attackers to execute arbitrary code via a crafted Literal Run.
Attacker Value
Unknown

CVE-2019-17542

Disclosure Date: October 14, 2019 (last updated November 27, 2024)
FFmpeg before 4.2 has a heap-based buffer overflow in vqa_decode_chunk because of an out-of-array access in vqa_decode_init in libavcodec/vqavideo.c.
Attacker Value
Unknown

CVE-2019-17539

Disclosure Date: October 14, 2019 (last updated November 27, 2024)
In FFmpeg before 4.2, avcodec_open2 in libavcodec/utils.c allows a NULL pointer dereference and possibly unspecified other impact when there is no valid close function pointer.
Attacker Value
Unknown

CVE-2019-15942

Disclosure Date: September 05, 2019 (last updated November 27, 2024)
FFmpeg through 4.2 has a "Conditional jump or move depends on uninitialised value" issue in h2645_parse because alloc_rbsp_buffer in libavcodec/h2645_parse.c mishandles rbsp_buffer.
Attacker Value
Unknown

CVE-2019-13390

Disclosure Date: July 07, 2019 (last updated November 27, 2024)
In FFmpeg 4.1.3, there is a division by zero at adx_write_trailer in libavformat/rawenc.c.
0
Attacker Value
Unknown

CVE-2019-13312

Disclosure Date: July 05, 2019 (last updated November 27, 2024)
block_cmp() in libavcodec/zmbvenc.c in FFmpeg 4.1.3 has a heap-based buffer over-read.
0
Attacker Value
Unknown

CVE-2019-12730

Disclosure Date: June 04, 2019 (last updated November 27, 2024)
aa_read_header in libavformat/aadec.c in FFmpeg before 3.2.14 and 4.x before 4.1.4 does not check for sscanf failure and consequently allows use of uninitialized variables.
0
Attacker Value
Unknown

CVE-2019-11339

Disclosure Date: April 19, 2019 (last updated November 27, 2024)
The studio profile decoder in libavcodec/mpeg4videodec.c in FFmpeg 4.0 before 4.0.4 and 4.1 before 4.1.2 allows remote attackers to cause a denial of service (out-of-array access) or possibly have unspecified other impact via crafted MPEG-4 video data.
0
Attacker Value
Unknown

CVE-2019-11338

Disclosure Date: April 19, 2019 (last updated November 27, 2024)
libavcodec/hevcdec.c in FFmpeg 3.4 and 4.1.2 mishandles detection of duplicate first slices, which allows remote attackers to cause a denial of service (NULL pointer dereference and out-of-array access) or possibly have unspecified other impact via crafted HEVC data.