rpm package
suse/ffmpeg&distro=SUSE Linux Enterprise Module for Desktop Applications 15 SP3
pkg:rpm/suse/ffmpeg&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015%20SP3
Vulnerabilities (43)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2020-22038 | Med | 6.5 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | Jun 1, 2021 | A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the ff_v4l2_m2m_create_context function in v4l2_m2m.c. | |
| CVE-2020-22037 | Med | 6.5 | < 3.4.2-11.17.1 | 3.4.2-11.17.1 | Jun 1, 2021 | A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in avcodec_alloc_context3 at options.c. | |
| CVE-2020-22034 | Hig | 8.8 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 27, 2021 | A heap-based Buffer Overflow vulnerability exists FFmpeg 4.2 at libavfilter/vf_floodfill.c, which might lead to memory corruption and other potential consequences. | |
| CVE-2020-22033 | Med | 6.5 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 27, 2021 | A heap-based Buffer Overflow Vulnerability exists FFmpeg 4.2 at libavfilter/vf_vmafmotion.c in convolution_y_8bit, which could let a remote malicious user cause a Denial of Service. | |
| CVE-2020-22032 | Hig | 8.8 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 27, 2021 | A heap-based Buffer Overflow vulnerability exists FFmpeg 4.2 at libavfilter/vf_edgedetect.c in gaussian_blur, which might lead to memory corruption and other potential consequences. | |
| CVE-2020-22025 | Hig | 8.8 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 27, 2021 | A heap-based Buffer Overflow vulnerability exists in gaussian_blur at libavfilter/vf_edgedetect.c, which might lead to memory corruption and other potential consequences. | |
| CVE-2020-22023 | Hig | 8.8 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 27, 2021 | A heap-based Buffer Overflow vulnerabililty exists in FFmpeg 4.2 in filter_frame at libavfilter/vf_bitplanenoise.c, which might lead to memory corruption and other potential consequences. | |
| CVE-2020-22022 | Hig | 8.8 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 27, 2021 | A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_frame at libavfilter/vf_fieldorder.c, which might lead to memory corruption and other potential consequences. | |
| CVE-2020-22017 | Hig | 8.8 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 27, 2021 | A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at ff_fill_rectangle in libavfilter/drawutils.c, which might lead to memory corruption and other potential consequences. | |
| CVE-2020-22016 | Hig | 8.8 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 27, 2021 | A heap-based Buffer Overflow vulnerability in FFmpeg 4.2 at libavcodec/get_bits.h when writing .mov files, which might lead to memory corruption and other potential consequences. | |
| CVE-2020-22031 | Hig | 8.8 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 27, 2021 | A Heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at libavfilter/vf_w3fdif.c in filter16_complex_low, which might lead to memory corruption and other potential consequences. | |
| CVE-2020-22026 | Med | 6.5 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 26, 2021 | Buffer Overflow vulnerability exists in FFmpeg 4.2 in the config_input function at libavfilter/af_tremolo.c, which could let a remote malicious user cause a Denial of Service. | |
| CVE-2020-22021 | Med | 6.5 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 26, 2021 | Buffer Overflow vulnerability in FFmpeg 4.2 at filter_edges function in libavfilter/vf_yadif.c, which could let a remote malicious user cause a Denial of Service. | |
| CVE-2020-22020 | Med | 6.5 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 26, 2021 | Buffer Overflow vulnerability in FFmpeg 4.2 in the build_diff_map function in libavfilter/vf_fieldmatch.c, which could let a remote malicious user cause a Denial of Service. | |
| CVE-2020-22019 | Med | 6.5 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 26, 2021 | Buffer Overflow vulnerability in FFmpeg 4.2 at convolution_y_10bit in libavfilter/vf_vmafmotion.c, which could let a remote malicious user cause a Denial of Service. | |
| CVE-2020-22015 | Hig | 8.8 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 26, 2021 | Buffer Overflow vulnerability in FFmpeg 4.2 in mov_write_video_tag due to the out of bounds in libavformat/movenc.c, which could let a remote malicious user obtain sensitive information, cause a Denial of Service, or execute arbitrary code. | |
| CVE-2020-20451 | Hig | 7.5 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 25, 2021 | Denial of Service issue in FFmpeg 4.2 due to resource management errors via fftools/cmdutils.c. | |
| CVE-2020-20448 | Med | 6.5 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 25, 2021 | FFmpeg 4.1.3 is affected by a Divide By Zero issue via libavcodec/ratecontrol.c, which allows a remote malicious user to cause a Denial of Service. | |
| CVE-2020-21041 | Hig | 7.5 | < 3.4.2-11.3.1 | 3.4.2-11.3.1 | May 24, 2021 | Buffer Overflow vulnerability exists in FFmpeg 4.1 via apng_do_inverse_blend in libavcodec/pngenc.c, which could let a remote malicious user cause a Denial of Service | |
| CVE-2020-35965 | Hig | 7.5 | < 3.4.2-11.17.1 | 3.4.2-11.17.1 | Jan 4, 2021 | decode_frame in libavcodec/exr.c in FFmpeg 4.3.1 has an out-of-bounds write because of errors in calculations of when to perform memset zero operations. |
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the ff_v4l2_m2m_create_context function in v4l2_m2m.c.
- affected < 3.4.2-11.17.1fixed 3.4.2-11.17.1
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in avcodec_alloc_context3 at options.c.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
A heap-based Buffer Overflow vulnerability exists FFmpeg 4.2 at libavfilter/vf_floodfill.c, which might lead to memory corruption and other potential consequences.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
A heap-based Buffer Overflow Vulnerability exists FFmpeg 4.2 at libavfilter/vf_vmafmotion.c in convolution_y_8bit, which could let a remote malicious user cause a Denial of Service.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
A heap-based Buffer Overflow vulnerability exists FFmpeg 4.2 at libavfilter/vf_edgedetect.c in gaussian_blur, which might lead to memory corruption and other potential consequences.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
A heap-based Buffer Overflow vulnerability exists in gaussian_blur at libavfilter/vf_edgedetect.c, which might lead to memory corruption and other potential consequences.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
A heap-based Buffer Overflow vulnerabililty exists in FFmpeg 4.2 in filter_frame at libavfilter/vf_bitplanenoise.c, which might lead to memory corruption and other potential consequences.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_frame at libavfilter/vf_fieldorder.c, which might lead to memory corruption and other potential consequences.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at ff_fill_rectangle in libavfilter/drawutils.c, which might lead to memory corruption and other potential consequences.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
A heap-based Buffer Overflow vulnerability in FFmpeg 4.2 at libavcodec/get_bits.h when writing .mov files, which might lead to memory corruption and other potential consequences.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
A Heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at libavfilter/vf_w3fdif.c in filter16_complex_low, which might lead to memory corruption and other potential consequences.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
Buffer Overflow vulnerability exists in FFmpeg 4.2 in the config_input function at libavfilter/af_tremolo.c, which could let a remote malicious user cause a Denial of Service.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
Buffer Overflow vulnerability in FFmpeg 4.2 at filter_edges function in libavfilter/vf_yadif.c, which could let a remote malicious user cause a Denial of Service.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
Buffer Overflow vulnerability in FFmpeg 4.2 in the build_diff_map function in libavfilter/vf_fieldmatch.c, which could let a remote malicious user cause a Denial of Service.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
Buffer Overflow vulnerability in FFmpeg 4.2 at convolution_y_10bit in libavfilter/vf_vmafmotion.c, which could let a remote malicious user cause a Denial of Service.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
Buffer Overflow vulnerability in FFmpeg 4.2 in mov_write_video_tag due to the out of bounds in libavformat/movenc.c, which could let a remote malicious user obtain sensitive information, cause a Denial of Service, or execute arbitrary code.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
Denial of Service issue in FFmpeg 4.2 due to resource management errors via fftools/cmdutils.c.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
FFmpeg 4.1.3 is affected by a Divide By Zero issue via libavcodec/ratecontrol.c, which allows a remote malicious user to cause a Denial of Service.
- affected < 3.4.2-11.3.1fixed 3.4.2-11.3.1
Buffer Overflow vulnerability exists in FFmpeg 4.1 via apng_do_inverse_blend in libavcodec/pngenc.c, which could let a remote malicious user cause a Denial of Service
- affected < 3.4.2-11.17.1fixed 3.4.2-11.17.1
decode_frame in libavcodec/exr.c in FFmpeg 4.3.1 has an out-of-bounds write because of errors in calculations of when to perform memset zero operations.
Page 2 of 3