Search CVE reports
431 – 440 of 531 results
The rle_unpack function in vmdav.c in libavcodec in FFmpeg git 20130328 through 20130501 does not properly use the bytestream2 API, which allows remote attackers to cause a denial of service (out-of-bounds array access and...
4 affected packages
ffmpeg, ffmpeg-extra, libav, libav-extra
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| ffmpeg | — | — | — | — |
| ffmpeg-extra | — | — | — | — |
| libav | — | — | — | — |
| libav-extra | — | — | — | — |
Some fixes available 4 of 9
The msrle_decode_8_16_24_32 function in msrledec.c in libavcodec in FFmpeg through 1.1.3 does not properly determine certain end pointers, which allows remote attackers to cause a denial of service (out-of-bounds array access and...
4 affected packages
libav, ffmpeg, ffmpeg-extra, libav-extra
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| libav | — | — | — | — |
| ffmpeg | — | — | — | — |
| ffmpeg-extra | — | — | — | — |
| libav-extra | — | — | — | — |
Some fixes available 4 of 9
The iff_read_header function in iff.c in libavformat in FFmpeg through 1.1.3 does not properly handle data sizes for Interchange File Format (IFF) data during operations involving a CMAP chunk or a video codec, which allows remote...
4 affected packages
ffmpeg, ffmpeg-extra, libav, libav-extra
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| ffmpeg | — | — | — | — |
| ffmpeg-extra | — | — | — | — |
| libav | — | — | — | — |
| libav-extra | — | — | — | — |
The avcodec_decode_audio4 function in utils.c in libavcodec in FFmpeg before 1.1.3 does not verify the decoding state before proceeding with certain skip operations, which allows remote attackers to cause a denial of service...
4 affected packages
ffmpeg, ffmpeg-extra, libav, libav-extra
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| ffmpeg | — | — | — | — |
| ffmpeg-extra | — | — | — | — |
| libav | — | — | — | — |
| libav-extra | — | — | — | — |
Some fixes available 4 of 9
The ff_h264_decode_seq_parameter_set function in h264_ps.c in libavcodec in FFmpeg before 1.1.3 does not validate the relationship between luma depth and chroma depth, which allows remote attackers to cause a denial of service...
4 affected packages
ffmpeg, ffmpeg-extra, libav, libav-extra
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| ffmpeg | — | — | — | — |
| ffmpeg-extra | — | — | — | — |
| libav | — | — | — | — |
| libav-extra | — | — | — | — |
Some fixes available 9 of 14
Buffer overflow in the vorbis_parse_setup_hdr_floors function in the Vorbis decoder in vorbisdec.c in libavcodec in FFmpeg through 1.1.3, as used in Google Chrome before 25.0.1364.97 on Windows and Linux and before 25.0.1364.99 on...
5 affected packages
chromium-browser, ffmpeg, ffmpeg-extra, libav, libav-extra
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| chromium-browser | — | — | — | — |
| ffmpeg | — | — | — | — |
| ffmpeg-extra | — | — | — | — |
| libav | — | — | — | — |
| libav-extra | — | — | — | — |
The H.263 codec (libavcodec/h263dec.c) in FFmpeg 0.7.x before 0.7.12, 0.8.x before 0.8.11, and unspecified versions before 0.10, and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6, 0.7.x before 0.7.5, and 0.8.x before 0.8.1 has...
4 affected packages
ffmpeg, ffmpeg-extra, libav, libav-extra
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| ffmpeg | — | — | — | — |
| ffmpeg-extra | — | — | — | — |
| libav | — | — | — | — |
| libav-extra | — | — | — | — |
Some fixes available 10 of 13
Google Chrome before 23.0.1271.97, and Libav 0.7.x before 0.7.7 and 0.8.x before 0.8.5, do not properly perform AAC decoding, which allows remote attackers to cause a denial of service (stack memory corruption) or possibly have...
5 affected packages
ffmpeg, chromium-browser, ffmpeg-extra, libav, libav-extra
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| ffmpeg | — | — | — | — |
| chromium-browser | — | — | — | — |
| ffmpeg-extra | — | — | — | — |
| libav | — | — | — | — |
| libav-extra | — | — | — | — |
Unspecified vulnerability in libavcodec/wmalosslessdec.c in FFmpeg before 0.11 has unknown impact and attack vectors, related to the "put bit buffer when num_saved_bits is reset."
4 affected packages
ffmpeg, ffmpeg-extra, libav, libav-extra
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| ffmpeg | — | — | — | — |
| ffmpeg-extra | — | — | — | — |
| libav | — | — | — | — |
| libav-extra | — | — | — | — |
Multiple unspecified vulnerabilities in libavcodec/wmalosslessdec.c in FFmpeg before 0.11 have unknown impact and attack vectors related to (1) size of "mclms arrays," (2) "a get_bits(0) in decode_ac_filter," and (3) "too many...
4 affected packages
ffmpeg, ffmpeg-extra, libav, libav-extra
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| ffmpeg | — | — | — | — |
| ffmpeg-extra | — | — | — | — |
| libav | — | — | — | — |
| libav-extra | — | — | — | — |