Search CVE reports


Toggle filters

61 – 70 of 521 results


CVE-2023-46407

Medium priority
Not affected

FFmpeg prior to commit bf814 was discovered to contain an out of bounds read via the dist->alphabet_size variable in the read_vlc_prefix() function.

1 affected package

ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Not affected Not affected Not affected Not affected
Show less packages

CVE-2022-4907

Medium priority
Vulnerable

Uninitialized Use in FFmpeg in Google Chrome prior to 108.0.5359.71 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)

2 affected packages

chromium-browser, ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
chromium-browser Not affected Not affected Not in release Ignored
ffmpeg Vulnerable Not affected Not affected Not affected
Show less packages

CVE-2022-48434

Medium priority

Some fixes available 3 of 5

libavcodec/pthread_frame.c in FFmpeg before 5.1.2, as used in VLC and other products, leaves stale hwaccel state in worker threads, which allows attackers to trigger a use-after-free and execute arbitrary code in...

1 affected package

ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Not affected Fixed Fixed Fixed
Show less packages

CVE-2022-3965

Medium priority

Some fixes available 1 of 6

A vulnerability classified as problematic was found in ffmpeg. This vulnerability affects the function smc_encode_stream of the file libavcodec/smcenc.c of the component QuickTime Graphics Video Encoder. The manipulation of the...

1 affected package

ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Vulnerable Not affected Not affected Not affected
Show less packages

CVE-2022-3964

Medium priority

Some fixes available 2 of 7

A vulnerability classified as problematic has been found in ffmpeg. This affects an unknown part of the file libavcodec/rpzaenc.c of the component QuickTime RPZA Video Encoder. The manipulation of the argument y_size leads to...

1 affected package

ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Vulnerable Fixed Not affected Not affected
Show less packages

CVE-2022-3341

Medium priority
Fixed

A null pointer dereference issue was discovered in 'FFmpeg' in decode_main_header() function of libavformat/nutdec.c file. The flaw occurs because the function lacks check of the return value of avformat_new_stream() and triggers...

1 affected package

ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Not affected Fixed Fixed Fixed
Show less packages

CVE-2022-3109

Medium priority
Fixed

An issue was discovered in the FFmpeg package, where vp3_decode_frame in libavcodec/vp3.c lacks check of the return value of av_malloc() and will cause a null pointer dereference, impacting availability.

1 affected package

ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Not affected Fixed Fixed Fixed
Show less packages

CVE-2022-2566

Medium priority
Not affected

A heap out-of-bounds memory write exists in FFMPEG since version 5.1. The size calculation in `build_open_gop_key_points()` goes through all entries in the loop and adds `sc->ctts_data[i].count` to `sc->sample_offsets_count`. This...

1 affected package

ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Not affected Not affected Not affected
Show less packages

CVE-2022-1475

Medium priority
Fixed

An integer overflow vulnerability was found in FFmpeg versions before 4.4.2 and before 5.0.1 in g729_parse() in llibavcodec/g729_parser.c when processing a specially crafted file.

1 affected package

ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Fixed Not affected Not affected
Show less packages

CVE-2021-38291

Medium priority

Some fixes available 4 of 5

FFmpeg version (git commit de8e6e67e7523e48bb27ac224a0b446df05e1640) suffers from a an assertion failure at src/libavutil/mathematics.c.

1 affected package

ffmpeg

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ffmpeg Not affected Fixed Fixed
Show less packages