Skip to main content

Vendor archive

ffmpeg CVEs

Beta · best-effort

482 CVEs tagged to vendor ffmpeg105 Critical, 147 High, 225 Medium, 5 Low, 0 Unrated.

CVE-2016-7905

Published Dec 23, 2016

The read_gab2_sub function in libavformat/avidec.c in FFmpeg before 3.1.4 allows remote attackers to cause a denial of service (NULL pointer used) via a crafted AVI file.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-7785

Published Dec 23, 2016

The avi_read_seek function in libavformat/avidec.c in FFmpeg before 3.1.4 allows remote attackers to cause a denial of service (assert fault) via a crafted AVI file.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-7562

Published Dec 23, 2016

The ff_draw_pc_font function in libavcodec/cga_data.c in FFmpeg before 3.1.4 allows remote attackers to cause a denial of service (buffer overflow) via a crafted AVI file.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-7555

Published Dec 23, 2016

The avi_read_header function in libavformat/avidec.c in FFmpeg before 3.1.4 is vulnerable to memory leak when decoding an AVI file that has a crafted "strh" structure.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-7502

Published Dec 23, 2016

The cavs_idct8_add_c function in libavcodec/cavsdsp.c in FFmpeg before 3.1.4 is vulnerable to reading out-of-bounds memory when decoding with cavs_decode.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-7450

Published Dec 23, 2016

The ff_log2_16bit_c function in libavutil/intmath.h in FFmpeg before 3.1.4 is vulnerable to reading out-of-bounds memory when it decodes a malformed AIFF file.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-7122

Published Dec 23, 2016

The avi_read_nikon function in libavformat/avidec.c in FFmpeg before 3.1.4 is vulnerable to infinite loop when it decodes an AVI file that has a crafted 'nctg' structure.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-6881

Published Dec 23, 2016

The zlib_refill function in libavformat/swfdec.c in FFmpeg before 3.1.3 allows remote attackers to cause an infinite loop denial of service via a crafted SWF file.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-6671

Published Dec 23, 2016

The raw_decode function in libavcodec/rawdec.c in FFmpeg before 3.1.2 allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a craf…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-2330

Published Feb 12, 2016

libavcodec/gif.c in FFmpeg before 2.8.6 does not properly calculate a buffer size, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possi…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-2329

Published Feb 12, 2016

libavcodec/tiff.c in FFmpeg before 2.8.6 does not properly validate RowsPerStrip values and YCbCr chrominance subsampling factors, which allows remote attackers to cause a denial…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-2328

Published Feb 12, 2016

libswscale/swscale_unscaled.c in FFmpeg before 2.8.6 does not validate certain height values, which allows remote attackers to cause a denial of service (out-of-bounds array read…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-2327

Published Feb 12, 2016

libavcodec/pngenc.c in FFmpeg before 2.8.5 uses incorrect line sizes in certain row calculations, which allows remote attackers to cause a denial of service (out-of-bounds array a…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2016-2213

Published Feb 3, 2016

The jpeg2000_decode_tile function in libavcodec/jpeg2000dec.c in FFmpeg before 2.8.6 allows remote attackers to cause a denial of service (out-of-bounds array read access) via cra…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-8663

Published Dec 24, 2015

The ff_get_buffer function in libavcodec/utils.c in FFmpeg before 2.8.4 preserves width and height values after a failure, which allows remote attackers to cause a denial of servi…

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort

CVE-2015-8662

Published Dec 24, 2015

The ff_dwt_decode function in libavcodec/jpeg2000dwt.c in FFmpeg before 2.8.4 does not validate the number of decomposition levels before proceeding with Discrete Wavelet Transfor…

CVSS 7.3 · High
Vendor/product tagsBeta · best-effort

CVE-2015-8661

Published Dec 24, 2015

The h264_slice_header_init function in libavcodec/h264_slice.c in FFmpeg before 2.8.3 does not validate the relationship between the number of threads and the number of slices, wh…

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort

CVE-2015-8365

Published Nov 26, 2015

The smka_decode_frame function in libavcodec/smacker.c in FFmpeg before 2.6.5, 2.7.x before 2.7.3, and 2.8.x through 2.8.2 does not verify that the data size is consistent with th…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-8364

Published Nov 26, 2015

Integer overflow in the ff_ivi_init_planes function in libavcodec/ivi.c in FFmpeg before 2.6.5, 2.7.x before 2.7.3, and 2.8.x through 2.8.2 allows remote attackers to cause a deni…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-8363

Published Nov 26, 2015

The jpeg2000_read_main_headers function in libavcodec/jpeg2000dec.c in FFmpeg before 2.6.5, 2.7.x before 2.7.3, and 2.8.x through 2.8.2 does not enforce uniqueness of the SIZ mark…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 251-275 of 482 CVEsPage 11 of 20