Show filters
433 Total Results
Displaying 151-160 of 433
Sort by:
Attacker Value
Unknown

CVE-2018-6392

Disclosure Date: January 29, 2018 (last updated November 26, 2024)
The filter_slice function in libavfilter/vf_transpose.c in FFmpeg through 3.4.1 allows remote attackers to cause a denial of service (out-of-array access) via a crafted MP4 file.
0
Attacker Value
Unknown

CVE-2015-1208

Disclosure Date: January 09, 2018 (last updated November 08, 2023)
Integer underflow in the mov_read_default function in libavformat/mov.c in FFmpeg before 2.4.6 allows remote attackers to obtain sensitive information from heap and/or stack memory via a crafted MP4 file.
0
Attacker Value
Unknown

CVE-2017-1000460

Disclosure Date: January 03, 2018 (last updated November 26, 2024)
In line libavcodec/h264dec.c:500 in libav(v13_dev0), ffmpeg(n3.4), chromium(56 prior Feb 13, 2017), the return value of init_get_bits is ignored and get_ue_golomb(&gb) is called on an uninitialized get_bits context, which causes a NULL deref exception.
0
Attacker Value
Unknown

CVE-2017-9608

Disclosure Date: December 27, 2017 (last updated November 26, 2024)
The dnxhd decoder in FFmpeg before 3.2.6, and 3.3.x before 3.3.3 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted mov file.
0
Attacker Value
Unknown

CVE-2017-17555

Disclosure Date: December 12, 2017 (last updated November 08, 2023)
The swri_audio_convert function in audioconvert.c in FFmpeg libswresample through 3.0.101, as used in FFmpeg 3.4.1, aubio 0.4.6, and other products, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted audio file.
0
Attacker Value
Unknown

CVE-2017-17081

Disclosure Date: November 30, 2017 (last updated November 26, 2024)
The gmc_mmx function in libavcodec/x86/mpegvideodsp.c in FFmpeg 2.3 and 3.4 does not properly validate widths and heights, which allows remote attackers to cause a denial of service (integer signedness error and out-of-array read) via a crafted MPEG file.
0
Attacker Value
Unknown

CVE-2017-16840

Disclosure Date: November 21, 2017 (last updated November 08, 2023)
The VC-2 Video Compression encoder in FFmpeg 3.0 and 3.4 allows remote attackers to cause a denial of service (out-of-bounds read) because of incorrect buffer padding for non-Haar wavelets, related to libavcodec/vc2enc.c and libavcodec/vc2enc_dwt.c.
Attacker Value
Unknown

CVE-2017-15672

Disclosure Date: November 06, 2017 (last updated November 08, 2023)
The read_header function in libavcodec/ffv1dec.c in FFmpeg 2.4 and 3.3.4 and possibly earlier allows remote attackers to have unspecified impact via a crafted MP4 file, which triggers an out-of-bounds read.
0
Attacker Value
Unknown

CVE-2017-15186

Disclosure Date: October 24, 2017 (last updated November 26, 2024)
Double free vulnerability in FFmpeg 3.3.4 and earlier allows remote attackers to cause a denial of service via a crafted AVI file.
0
Attacker Value
Unknown

CVE-2017-14767

Disclosure Date: September 27, 2017 (last updated November 26, 2024)
The sdp_parse_fmtp_config_h264 function in libavformat/rtpdec_h264.c in FFmpeg before 3.3.4 mishandles empty sprop-parameter-sets values, which allows remote attackers to cause a denial of service (heap buffer overflow) or possibly have unspecified other impact via a crafted sdp file.
0