Search CVE reports


Toggle filters

21 – 30 of 521 results


CVE-2024-36618

Medium priority
Vulnerable

FFmpeg n6.1.1 has a vulnerability in the AVI demuxer of the libavformat library which allows for an integer overflow, potentially resulting in a denial-of-service (DoS) condition.

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2024-36617

Medium priority

Some fixes available 4 of 6

FFmpeg n6.1.1 has an integer overflow vulnerability in the FFmpeg CAF decoder.

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Vulnerable Fixed Fixed Fixed
Show less packages

CVE-2024-36616

Medium priority
Vulnerable

An integer overflow in the component /libavformat/westwood_vqa.c of FFmpeg n6.1.1 allows attackers to cause a denial of service in the application via a crafted VQA file.

2 affected packages

ffmpeg, libav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Vulnerable Vulnerable Vulnerable Vulnerable
libav Not in release Not in release Not in release
Show less packages

CVE-2024-36615

Medium priority
Needs evaluation

FFmpeg n7.0 has a race condition vulnerability in the VP9 decoder. This could lead to a data race if video encoding parameters were being exported, as the side data would be attached in the decoder thread while being read in the...

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Not affected Not affected Not affected Not affected
Show less packages

CVE-2024-36613

Medium priority
Vulnerable

FFmpeg n6.1.1 has a vulnerability in the DXA demuxer of the libavformat library allowing for an integer overflow, potentially resulting in a denial-of-service (DoS) condition or other undefined behavior.

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2024-35369

Medium priority
Needs evaluation

In FFmpeg version n6.1.1, specifically within the avcodec/speexdec.c module, a potential security vulnerability exists due to insufficient validation of certain parameters when parsing Speex codec extradata. This vulnerability...

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Not affected Not affected Not affected Not affected
Show less packages

CVE-2024-35368

Medium priority
Vulnerable

FFmpeg n7.0 is affected by a Double Free via the rkmpp_retrieve_frame function within libavcodec/rkmppdec.c.

2 affected packages

ffmpeg, libav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Vulnerable Vulnerable Vulnerable Vulnerable
libav Not in release Not in release Not in release
Show less packages

CVE-2024-35367

Medium priority
Vulnerable

FFmpeg n6.1.1 has an Out-of-bounds Read via libavcodec/ppc/vp8dsp_altivec.c, static const vec_s8 h_subpel_filters_outer

2 affected packages

ffmpeg, libav

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Vulnerable Vulnerable Vulnerable Vulnerable
libav Not in release Not in release Not in release
Show less packages

CVE-2024-35366

Medium priority
Vulnerable

FFmpeg n6.1.1 is Integer Overflow. The vulnerability exists in the parse_options function of sbgdec.c within the libavformat module. When parsing certain options, the software does not adequately validate the input. This allows...

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages

CVE-2024-35365

Medium priority
Vulnerable

FFmpeg version n6.1.1 has a double-free vulnerability in the fftools/ffmpeg_mux_init.c component of FFmpeg, specifically within the new_stream_audio function.

2 affected packages

libav, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
libav Not in release Not in release Not in release
ffmpeg Vulnerable Vulnerable Vulnerable Vulnerable
Show less packages