VYPR

Ffmpeg

by FFmpeg

Source repositories

CVEs (525)

  • CVE-2020-22037MedJun 1, 2021
    risk 0.42cvss 6.5epss 0.02

    A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in avcodec_alloc_context3 at options.c.

  • CVE-2020-22033MedMay 27, 2021
    risk 0.42cvss 6.5epss 0.01

    A heap-based Buffer Overflow Vulnerability exists FFmpeg 4.2 at libavfilter/vf_vmafmotion.c in convolution_y_8bit, which could let a remote malicious user cause a Denial of Service.

  • CVE-2020-22028MedMay 26, 2021
    risk 0.42cvss 6.5epss 0.02

    Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_vertically_8 at libavfilter/vf_avgblur.c, which could cause a remote Denial of Service.

  • CVE-2020-22026MedMay 26, 2021
    risk 0.42cvss 6.5epss 0.01

    Buffer Overflow vulnerability exists in FFmpeg 4.2 in the config_input function at libavfilter/af_tremolo.c, which could let a remote malicious user cause a Denial of Service.

  • CVE-2020-22024MedMay 26, 2021
    risk 0.42cvss 6.5epss 0.01

    Buffer Overflow vulnerability in FFmpeg 4.2 at the lagfun_frame16 function in libavfilter/vf_lagfun.c, which could let a remote malicious user cause Denial of Service.

  • CVE-2020-22021MedMay 26, 2021
    risk 0.42cvss 6.5epss 0.02

    Buffer Overflow vulnerability in FFmpeg 4.2 at filter_edges function in libavfilter/vf_yadif.c, which could let a remote malicious user cause a Denial of Service.

  • CVE-2020-22020MedMay 26, 2021
    risk 0.42cvss 6.5epss 0.01

    Buffer Overflow vulnerability in FFmpeg 4.2 in the build_diff_map function in libavfilter/vf_fieldmatch.c, which could let a remote malicious user cause a Denial of Service.

  • CVE-2020-22019MedMay 26, 2021
    risk 0.42cvss 6.5epss 0.01

    Buffer Overflow vulnerability in FFmpeg 4.2 at convolution_y_10bit in libavfilter/vf_vmafmotion.c, which could let a remote malicious user cause a Denial of Service.

  • CVE-2020-20453MedMay 25, 2021
    risk 0.42cvss 6.5epss 0.02

    FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aaccoder, which allows a remote malicious user to cause a Denial of Service

  • CVE-2020-20448MedMay 25, 2021
    risk 0.42cvss 6.5epss 0.01

    FFmpeg 4.1.3 is affected by a Divide By Zero issue via libavcodec/ratecontrol.c, which allows a remote malicious user to cause a Denial of Service.

  • CVE-2020-20446MedMay 25, 2021
    risk 0.42cvss 6.5epss 0.02

    FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aacpsy.c, which allows a remote malicious user to cause a Denial of Service.

  • CVE-2020-20445MedMay 25, 2021
    risk 0.42cvss 6.5epss 0.02

    FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/lpc.h, which allows a remote malicious user to cause a Denial of Service.

  • CVE-2020-35965HigJan 4, 2021
    risk 0.42cvss 7.5epss 0.02

    decode_frame in libavcodec/exr.c in FFmpeg 4.3.1 has an out-of-bounds write because of errors in calculations of when to perform memset zero operations.

  • CVE-2019-13390MedJul 7, 2019
    risk 0.42cvss 6.5epss 0.02

    In FFmpeg 4.1.3, there is a division by zero at adx_write_trailer in libavformat/rawenc.c.

  • CVE-2018-15822HigAug 23, 2018
    risk 0.42cvss 7.5epss 0.03

    The flv_write_packet function in libavformat/flvenc.c in FFmpeg through 2.8 does not check for an empty audio packet, leading to an assertion failure.

  • CVE-2018-7751MedApr 24, 2018
    risk 0.42cvss 6.5epss 0.02

    The svg_probe function in libavformat/img2dec.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (Infinite Loop) via a crafted XML file.

  • CVE-2018-10001MedApr 11, 2018
    risk 0.42cvss 6.5epss 0.02

    The decode_init function in libavcodec/utvideodec.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (out of array read) via an AVI file.

  • CVE-2018-6912MedFeb 12, 2018
    risk 0.42cvss 6.5epss 0.01

    The decode_plane function in libavcodec/utvideodec.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (out of array read) via a crafted AVI file.

  • CVE-2018-6392MedJan 29, 2018
    risk 0.42cvss 6.5epss 0.02

    The filter_slice function in libavfilter/vf_transpose.c in FFmpeg through 3.4.1 allows remote attackers to cause a denial of service (out-of-array access) via a crafted MP4 file.

  • CVE-2017-1000460MedJan 3, 2018
    risk 0.42cvss 6.5epss 0.00

    In line libavcodec/h264dec.c:500 in libav(v13_dev0), ffmpeg(n3.4), chromium(56 prior Feb 13, 2017), the return value of init_get_bits is ignored and get_ue_golomb(&gb) is called on an uninitialized get_bits context, which causes a NULL deref exception.

Page 9 of 27