CVE-2014-2099
|
The msrle_decode_frame function in libavcodec/msrle.c in FFmpeg before 2.1.4 does not properly calculate line sizes, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Microsoft RLE video data.
Published:
March 01, 2014; 11:57:25 PM -05:00
|
V2: 6.8 MEDIUM
|
CVE-2014-2098
|
libavcodec/wmalosslessdec.c in FFmpeg before 2.1.4 uses an incorrect data-structure size for certain coefficients, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via crafted WMA data.
Published:
March 01, 2014; 11:57:25 PM -05:00
|
V2: 6.8 MEDIUM
|
CVE-2014-2097
|
The tak_decode_frame function in libavcodec/takdec.c in FFmpeg before 2.1.4 does not properly validate a certain bits-per-sample value, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted TAK (aka Tom's lossless Audio Kompressor) data.
Published:
March 01, 2014; 11:57:25 PM -05:00
|
V2: 6.8 MEDIUM
|
CVE-2014-2263
|
The mpegts_write_pmt function in the MPEG2 transport stream (aka DVB) muxer (libavformat/mpegtsenc.c) in FFmpeg, possibly 2.1 and earlier, allows remote attackers to have unspecified impact and vectors, which trigger an out-of-bounds write.
Published:
February 28, 2014; 07:55:05 PM -05:00
|
V2: 6.8 MEDIUM
|
CVE-2011-4031
|
Integer underflow in the asfrtp_parse_packet function in libavformat/rtpdec_asf.c in FFmpeg before 0.8.3 allows remote attackers to execute arbitrary code via a crafted ASF packet.
Published:
May 09, 2012; 06:33:14 AM -04:00
|
V2: 9.3 HIGH
|
CVE-2009-0385
|
Integer signedness error in the fourxm_read_header function in libavformat/4xm.c in FFmpeg before revision 16846 allows remote attackers to execute arbitrary code via a malformed 4X movie file with a large current_track value, which triggers a NULL pointer dereference.
Published:
February 02, 2009; 02:30:00 PM -05:00
|
V2: 9.3 HIGH
|