Search CVE reports
231 – 240 of 332 results
The field_end function in libavcodec/h264.c in FFmpeg before 1.1.2 allows remote attackers to have an unspecified impact via crafted H.264 data, related to an SPS and slice mismatch and an out-of-bounds array access.
4 affected packages
libav, ffmpeg, ffmpeg-extra, libav-extra
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
libav | — | — | — | — |
ffmpeg | — | — | — | — |
ffmpeg-extra | — | — | — | — |
libav-extra | — | — | — | — |
libavcodec/huffyuvdec.c in FFmpeg before 1.1.2 allows remote attackers to have an unspecified impact via crafted Huffyuv data, related to an out-of-bounds write and (1) unchecked return codes from the init_vlc function and (2)...
4 affected packages
ffmpeg, ffmpeg-extra, libav, libav-extra
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-extra | — | — | — | — |
libav | — | — | — | — |
libav-extra | — | — | — | — |
The decode_slice_header function in libavcodec/h264.c in FFmpeg before 1.1.2 does not properly check when the pixel format changes, which allows remote attackers to have unspecified impact via crafted H.264 video data, related to...
4 affected packages
ffmpeg, ffmpeg-extra, libav, libav-extra
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-extra | — | — | — | — |
libav | — | — | — | — |
libav-extra | — | — | — | — |
The aac_decode_init function in libavcodec/aacdec.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.2 allows remote attackers to have an unspecified impact via a large number of channels in an AAC file, which triggers an out-of-bounds...
4 affected packages
libav, ffmpeg, ffmpeg-extra, libav-extra
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
libav | — | — | — | — |
ffmpeg | — | — | — | — |
ffmpeg-extra | — | — | — | — |
libav-extra | — | — | — | — |
The vqa_decode_chunk function in libavcodec/vqavideo.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.2 allows remote attackers to have an unspecified impact via a large (1) cbp0 or (2) cbpz chunk in Westwood Studios VQA Video file,...
4 affected packages
libav, ffmpeg, ffmpeg-extra, libav-extra
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
libav | — | — | — | — |
ffmpeg | — | — | — | — |
ffmpeg-extra | — | — | — | — |
libav-extra | — | — | — | — |
The gif_copy_img_rect function in libavcodec/gifdec.c in FFmpeg before 1.1.2 performs an incorrect calculation for an "end pointer," which allows remote attackers to have an unspecified impact via crafted GIF data that triggers an...
4 affected packages
ffmpeg, ffmpeg-extra, libav, libav-extra
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-extra | — | — | — | — |
libav | — | — | — | — |
libav-extra | — | — | — | — |
Buffer overflow in the rle_decode function in libavcodec/sanm.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.2 allows remote attackers to have an unspecified impact via crafted LucasArts Smush video data.
4 affected packages
ffmpeg, ffmpeg-extra, libav, libav-extra
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-extra | — | — | — | — |
libav | — | — | — | — |
libav-extra | — | — | — | — |
Multiple integer overflows in the process_frame_obj function in libavcodec/sanm.c in FFmpeg before 1.1.2 allow remote attackers to have an unspecified impact via crafted image dimensions in LucasArts Smush video data, which...
4 affected packages
ffmpeg, ffmpeg-extra, libav, libav-extra
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-extra | — | — | — | — |
libav | — | — | — | — |
libav-extra | — | — | — | — |
The avcodec_decode_audio4 function in libavcodec/utils.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.1 allows remote attackers to trigger memory corruption via vectors related to the channel layout.
4 affected packages
libav, ffmpeg, ffmpeg-extra, libav-extra
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
libav | — | — | — | — |
ffmpeg | — | — | — | — |
ffmpeg-extra | — | — | — | — |
libav-extra | — | — | — | — |
The ff_er_frame_end function in libavcodec/error_resilience.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.1 does not properly verify that a frame is fully initialized, which allows remote attackers to trigger a NULL pointer...
4 affected packages
ffmpeg, ffmpeg-extra, libav, libav-extra
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
ffmpeg | — | — | — | — |
ffmpeg-extra | — | — | — | — |
libav | — | — | — | — |
libav-extra | — | — | — | — |