Show filters
147 Total Results
Displaying 131-140 of 147
Sort by:
Attacker Value
Unknown

CVE-2010-3908

Disclosure Date: May 20, 2011 (last updated October 04, 2023)
FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a malformed WMV file.
0
Attacker Value
Unknown

CVE-2011-2160

Disclosure Date: May 20, 2011 (last updated October 04, 2023)
The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an unspecified impact via a crafted VC-1 file, a related issue to CVE-2011-0723.
0
Attacker Value
Unknown

CVE-2011-2162

Disclosure Date: May 20, 2011 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in FFmpeg 0.4.x through 0.6.x, as used in MPlayer 1.0 and other products, in Mandriva Linux 2009.0, 2010.0, and 2010.1; Corporate Server 4.0 (aka CS4.0); and Mandriva Enterprise Server 5 (aka MES5) have unknown impact and attack vectors, related to issues "originally discovered by Google Chrome developers."
0
Attacker Value
Unknown

CVE-2011-0722

Disclosure Date: May 20, 2011 (last updated October 04, 2023)
FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via a malformed RealMedia file.
0
Attacker Value
Unknown

CVE-2011-0723

Disclosure Date: May 20, 2011 (last updated October 04, 2023)
FFmpeg 0.5.x, as used in MPlayer and other products, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed VC-1 file.
0
Attacker Value
Unknown

CVE-2010-4704

Disclosure Date: January 22, 2011 (last updated October 04, 2023)
libavcodec/vorbis_dec.c in the Vorbis decoder in FFmpeg 0.6.1 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted .ogg file, related to the vorbis_floor0_decode function. NOTE: this might overlap CVE-2011-0480.
0
Attacker Value
Unknown

CVE-2010-3429

Disclosure Date: September 30, 2010 (last updated October 04, 2023)
flicvideo.c in libavcodec 0.6 and earlier in FFmpeg, as used in MPlayer and other products, allows remote attackers to execute arbitrary code via a crafted flic file, related to an "arbitrary offset dereference vulnerability."
0
Attacker Value
Unknown

CVE-2009-4635

Disclosure Date: February 10, 2010 (last updated October 04, 2023)
FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted MOV container with improperly ordered tags that cause (1) mov.c and (2) utils.c to use inconsistent codec types and identifiers, leading to processing of a video-structure pointer by the mp3 decoder, and a stack-based buffer overflow.
0
Attacker Value
Unknown

CVE-2009-4633

Disclosure Date: February 10, 2010 (last updated October 04, 2023)
vorbis_dec.c in FFmpeg 0.5 uses an assignment operator when a comparison operator was intended, which might allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted file that modifies a loop counter and triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2009-4638

Disclosure Date: February 10, 2010 (last updated October 04, 2023)
Integer overflow in FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors.
0