threat
engine
.sh
Back
·
··:··
Home
/
Product
/
ffmpeg
Product
ffmpeg
481 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
Sort
Newest first
Oldest first
Highest CVSS
Lowest CVSS
Min CVSS
Any
4.0+
7.0+ (High)
9.0+ (Critical)
Published since
Reset
CVE-2026-40962
< 8.1
FFmpeg before 8.1 has an integer overflow and resultant out-of-bounds write via CENC (Common Encryption) subsample data to libavfo
4.9
MEDIUM
CVE-2026-30999
<= 8.0.1
A heap buffer overflow in the av_bprint_finalize() function of FFmpeg v8.0.1 allows attackers to cause a Denial of Service (DoS) v
7.5
HIGH
CVE-2026-30998
<= 8.0.1
An improper resource deallocation and closure vulnerability in the tools/zmqsend.c component of FFmpeg v8.0.1 allows attackers to
7.5
HIGH
CVE-2026-30997
<= 8.0.1
An out-of-bounds read in the read_global_param() function (libavcodec/av1dec.c) of FFmpeg v8.0.1 allows attackers to cause a Denia
7.5
HIGH
CVE-2025-69693
all versions
Out-of-bounds read in FFmpeg 8.0 and 8.0.1 RV60 video decoder (libavcodec/rv60dec.c). The quantization parameter (qp) validation a
5.4
MEDIUM
CVE-2025-12343
>= 6.1 and < 8.1
A flaw was found in FFmpeg’s TensorFlow backend within the libavfilter/dnn_backend_tf.c source file. The issue occurs in the dnn
3.3
LOW
CVE-2025-10256
>= 3.2 and < 8.0
A NULL pointer dereference vulnerability exists in FFmpeg’s Firequalizer filter (libavfilter/af_firequalizer.c) due to a missing
5.3
MEDIUM
CVE-2025-63757
all versions
Integer overflow vulnerability in the yuv2ya16_X_c_template function in libswscale/output.c in FFmpeg 8.0.
7.5
HIGH
CVE-2024-55069
all versions
ffmpeg 7.1 is vulnerable to Null Pointer Dereference in function iamf_read_header in /libavformat/iamfdec.c.
5.3
MEDIUM
CVE-2025-1594
<= 7.1
A vulnerability, which was classified as critical, was found in FFmpeg up to 7.1. This affects the function ff_aac_search_for_tns
6.3
MEDIUM
CVE-2025-25469
< 2025-01-13
FFmpeg git-master before commit d5873b was discovered to contain a memory leak in the component libavutil/iamf.c.
6.5
MEDIUM
CVE-2025-25468
< 2025-01-13
FFmpeg git-master before commit d5873b was discovered to contain a memory leak in the component libavutil/mem.c.
6.5
MEDIUM
CVE-2025-22921
all versions
FFmpeg git-master,N-113007-g8d24a28d06 was discovered to contain a segmentation violation via the component /libavcodec/jpeg2000de
6.5
MEDIUM
CVE-2025-1373
<= 7.1
A vulnerability was found in FFmpeg up to 7.1. It has been rated as problematic. Affected by this issue is the function mov_read_t
3.3
LOW
CVE-2025-0518
all versions
Unchecked Return Value, Out-of-bounds Read vulnerability in FFmpeg allows Read Sensitive Constants Within an Executable. This vuln
5.3
MEDIUM
CVE-2023-6605
>= 2.0 and <= 6.0
A flaw was found in FFmpeg's DASH playlist support. This vulnerability allows arbitrary HTTP GET requests to be made on behalf of
7.2
HIGH
CVE-2023-6604
>= 2.0 and <= 6.0
A flaw was found in FFmpeg. This vulnerability allows unexpected additional CPU load and storage consumption, potentially leading
5.3
MEDIUM
CVE-2023-6601
>= 2.0 and <= 6.0
A flaw was found in FFmpeg's HLS demuxer. This vulnerability allows bypassing unsafe file extension checks and triggering arbitrar
4.7
MEDIUM
CVE-2024-36613
all versions
FFmpeg n6.1.1 has a vulnerability in the DXA demuxer of the libavformat library allowing for an integer overflow, potentially resu
6.2
MEDIUM
CVE-2024-35365
all versions
FFmpeg version n6.1.1 has a double-free vulnerability in the fftools/ffmpeg_mux_init.c component of FFmpeg, specifically within th
8.8
HIGH
CVE-2023-6603
>= 2.0 and <= 6.0
A flaw was found in FFmpeg's HLS playlist parsing. This vulnerability allows a denial of service via a maliciously crafted HLS pla
7.5
HIGH
CVE-2023-6602
>= 2.0 and <= 6.0
A flaw was found in FFmpeg's TTY Demuxer. This vulnerability allows possible data exfiltration via improper parsing of non-TTY-com
5.3
MEDIUM
CVE-2024-35368
all versions
FFmpeg n7.0 is affected by a Double Free via the rkmpp_retrieve_frame function within libavcodec/rkmppdec.c.
9.8
CRITICAL
CVE-2024-35367
all versions
FFmpeg n6.1.1 has an Out-of-bounds Read via libavcodec/ppc/vp8dsp_altivec.c, static const vec_s8 h_subpel_filters_outer
9.1
CRITICAL
CVE-2024-35366
all versions
FFmpeg n6.1.1 is Integer Overflow. The vulnerability exists in the parse_options function of sbgdec.c within the libavformat modul
9.1
CRITICAL
CVE-2024-36616
all versions
An integer overflow in the component /libavformat/westwood_vqa.c of FFmpeg n6.1.1 allows attackers to cause a denial of service in
6.5
MEDIUM
CVE-2024-36615
all versions
FFmpeg n7.0 has a race condition vulnerability in the VP9 decoder. This could lead to a data race if video encoding parameters wer
5.9
MEDIUM
CVE-2024-36618
all versions
FFmpeg n6.1.1 has a vulnerability in the AVI demuxer of the libavformat library which allows for an integer overflow, potentially
6.2
MEDIUM
CVE-2024-36617
< 3.4.14
FFmpeg n6.1.1 has an integer overflow vulnerability in the FFmpeg CAF decoder.
6.2
MEDIUM
CVE-2024-36619
all versions
FFmpeg n6.1.1 has a vulnerability in the WAVARC decoder of the libavcodec library which allows for an integer overflow when handli
5.3
MEDIUM
CVE-2024-35369
all versions
In FFmpeg version n6.1.1, specifically within the avcodec/speexdec.c module, a potential security vulnerability exists due to insu
5.5
MEDIUM
CVE-2024-7272
< 5.1.6
A vulnerability, which was classified as critical, was found in FFmpeg up to 5.1.5. This affects the function fill_audiodata of th
6.3
MEDIUM
CVE-2024-7055
< 4.3.8
A vulnerability was found in FFmpeg up to 7.0.1. It has been classified as critical. This affects the function pnm_decode_frame in
6.3
MEDIUM
CVE-2024-32230
all versions
FFmpeg 7.0 is vulnerable to Buffer Overflow. There is a negative-size-param bug at libavcodec/mpegvideo_enc.c:1216:21 in load_inpu
7.8
HIGH
CVE-2024-32229
all versions
FFmpeg 7.0 contains a heap-buffer-overflow at libavfilter/vf_tiltandshift.c:189:5 in copy_column.
8.4
HIGH
CVE-2024-32228
all versions
FFmpeg 7.0 is vulnerable to Buffer Overflow. There is a SEGV at libavcodec/hevcdec.c:2947:22 in hevc_frame_end.
6.6
MEDIUM
CVE-2023-51794
all versions
Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavfilte
7.8
HIGH
CVE-2023-51798
all versions
Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via a floating poi
7.8
HIGH
CVE-2023-51797
all versions
Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavfilte
6.7
MEDIUM
CVE-2023-51796
all versions
Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavfilte
3.6
LOW
CVE-2023-51795
all versions
Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavfilte
8.0
HIGH
CVE-2023-51793
all versions
Buffer Overflow vulnerability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavutil/
7.8
HIGH
CVE-2023-51791
all versions
Buffer Overflow vulenrability in Ffmpeg v.N113007-g8d24a28d06 allows a local attacker to execute arbitrary code via the libavcodec
7.8
HIGH
CVE-2023-50010
>= 6.1 and < 7.0
FFmpeg v.n6.1-3-g466799d4f5 allows a buffer over-read at ff_gradfun_blur_line_movdqa_sse2, as demonstrated by a call to the set_en
7.8
HIGH
CVE-2023-50009
>= 6.1 and < 7.0
FFmpeg v.n6.1-3-g466799d4f5 allows a heap-based buffer overflow via the ff_gaussian_blur_8 function in libavfilter/edge_template.c
8.0
HIGH
CVE-2023-50008
>= 6.1 and < 7.0
FFmpeg v.n6.1-3-g466799d4f5 allows memory consumption when using the colorcorrect filter, in the av_malloc function in libavutil/m
7.8
HIGH
CVE-2023-50007
>= 6.1 and < 7.0
FFmpeg v.n6.1-3-g466799d4f5 allows an attacker to trigger use of a parameter of negative size in the av_samples_set_silence functi
4.0
MEDIUM
CVE-2023-49502
>= 6.1 and < 7.0
Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the ff_bwdif_fi
8.8
HIGH
CVE-2023-49501
all versions
Buffer Overflow vulnerability in Ffmpeg v.n6.1-3-g466799d4f5 allows a local attacker to execute arbitrary code via the config_eq_o
8.0
HIGH
CVE-2024-31585
>= 5.1 and < 7.0
FFmpeg version n5.1 to n6.1 was discovered to contain an Off-by-one Error vulnerability in libavfilter/avf_showspectrum.c. This vu
5.3
MEDIUM
CVE-2024-31582
>= 6.1 and < 7.0
FFmpeg version n6.1 was discovered to contain a heap buffer overflow vulnerability in the draw_block_rectangle function of libavfi
7.8
HIGH
CVE-2024-31581
all versions
FFmpeg version n6.1 was discovered to contain an improper validation of array index vulnerability in libavcodec/cbs_h266_syntax_te
9.8
CRITICAL
CVE-2024-31578
< 7.0
FFmpeg version n6.1.1 was discovered to contain a heap use-after-free via the av_hwframe_ctx_init function.
7.5
HIGH
CVE-2023-49528
all versions
Buffer Overflow vulnerability in FFmpeg version n6.1-3-g466799d4f5, allows a local attacker to execute arbitrary code and cause a
8.0
HIGH
CVE-2024-22861
all versions
Integer overflow vulnerability in FFmpeg before n6.1, allows attackers to cause a denial of service (DoS) via the avcodec/osq modu
7.5
HIGH
CVE-2024-22862
all versions
Integer overflow vulnerability in FFmpeg before n6.1, allows remote attackers to execute arbitrary code via the JJPEG XL Parser.
9.8
CRITICAL
CVE-2024-22860
all versions
Integer overflow vulnerability in FFmpeg before n6.1, allows remote attackers to execute arbitrary code via the jpegxl_anim_read_p
9.8
CRITICAL
CVE-2023-47470
all versions
Buffer Overflow vulnerability in Ffmpeg before github commit 4565747056a11356210ed8edcecb920105e40b60 allows a remote attacker to
7.8
HIGH
CVE-2023-46407
all versions
FFmpeg prior to commit bf814 was discovered to contain an out of bounds read via the dist-alphabet_size variable in the read_vlc_p
5.5
MEDIUM
CVE-2021-28429
all versions
Integer overflow vulnerability in av_timecode_make_string in libavutil/timecode.c in FFmpeg version 4.3.2, allows local attackers
5.5
MEDIUM
CVE-2020-36138
all versions
An issue was discovered in decode_frame in libavcodec/tiff.c in FFmpeg version 4.3, allows remote attackers to cause a denial of s
7.5
HIGH
CVE-2022-48434
< 5.1.2
libavcodec/pthread_frame.c in FFmpeg before 5.1.2, as used in VLC and other products, leaves stale hwaccel state in worker threads
8.1
HIGH
CVE-2022-3341
< 5.0.3
A null pointer dereference issue was discovered in 'FFmpeg' in decode_main_header() function of libavformat/nutdec.c file. The fla
5.3
MEDIUM
CVE-2022-3109
< 5.0.3
An issue was discovered in the FFmpeg package, where vp3_decode_frame in libavcodec/vp3.c lacks check of the return value of av_ma
7.5
HIGH
CVE-2022-3965
>= 5.0 and < 5.0.3
A vulnerability classified as problematic was found in ffmpeg. This vulnerability affects the function smc_encode_stream of the fi
4.3
MEDIUM
CVE-2022-3964
>= 4.4 and < 4.4.4
A vulnerability classified as problematic has been found in ffmpeg. This affects an unknown part of the file libavcodec/rpzaenc.c
4.3
MEDIUM
CVE-2022-2566
all versions
A heap out-of-bounds memory write exists in FFMPEG since version 5.1. The size calculation in
build_open_gop_key_points()
goes t
9.0
CRITICAL
CVE-2014-125025
all versions
A vulnerability classified as problematic has been found in FFmpeg 2.0. This affects the function decode_pulses. The manipulation
5.3
MEDIUM
CVE-2014-125024
all versions
A vulnerability was found in FFmpeg 2.0. It has been rated as critical. Affected by this issue is the function lag_decode_frame. T
7.3
HIGH
CVE-2014-125023
all versions
A vulnerability was found in FFmpeg 2.0. It has been declared as problematic. Affected by this vulnerability is the function truem
5.3
MEDIUM
CVE-2014-125022
all versions
A vulnerability was found in FFmpeg 2.0. It has been classified as problematic. Affected is the function shorten_decode_frame of t
5.3
MEDIUM
CVE-2014-125021
all versions
A vulnerability was found in FFmpeg 2.0 and classified as problematic. This issue affects the function cmv_process_header. The man
5.3
MEDIUM
CVE-2014-125020
all versions
A vulnerability has been found in FFmpeg 2.0 and classified as critical. This vulnerability affects the function decode_update_thr
7.3
HIGH
CVE-2014-125019
all versions
A vulnerability, which was classified as problematic, was found in FFmpeg 2.0. This affects the function decode_nal_unit of the co
5.3
MEDIUM
CVE-2014-125018
all versions
A vulnerability, which was classified as problematic, has been found in FFmpeg 2.0. Affected by this issue is the function decode_
5.3
MEDIUM
CVE-2014-125017
all versions
A vulnerability classified as critical was found in FFmpeg 2.0. This vulnerability affects the function rpza_decode_stream. The ma
7.3
HIGH
CVE-2014-125016
all versions
A vulnerability was found in FFmpeg 2.0. It has been rated as problematic. This issue affects the function ff_init_buffer_info of
5.3
MEDIUM
CVE-2014-125015
all versions
A vulnerability classified as critical has been found in FFmpeg 2.0. Affected is the function read_var_block_data. The manipulatio
7.3
HIGH
CVE-2014-125014
all versions
A vulnerability classified as problematic was found in FFmpeg 2.0. Affected by this vulnerability is an unknown functionality of t
5.3
MEDIUM
CVE-2014-125013
all versions
A vulnerability was found in FFmpeg 2.0 and classified as problematic. This issue affects the function msrle_decode_frame of the f
5.3
MEDIUM
CVE-2014-125012
all versions
A vulnerability was found in FFmpeg 2.0. It has been classified as problematic. Affected is an unknown function of the file libavc
5.3
MEDIUM
CVE-2014-125011
all versions
A vulnerability was found in FFmpeg 2.0. It has been declared as problematic. Affected by this vulnerability is the function decod
5.3
MEDIUM
CVE-2014-125010
all versions
A vulnerability was found in FFmpeg 2.0. It has been rated as critical. Affected by this issue is the function decode_slice_header
5.3
MEDIUM
CVE-2014-125009
all versions
A vulnerability classified as problematic has been found in FFmpeg 2.0. This affects the function add_yblock of the file libavcode
5.3
MEDIUM
CVE-2014-125008
all versions
A vulnerability classified as problematic has been found in FFmpeg 2.0. Affected is the function vorbis_header of the file libavfo
5.3
MEDIUM
CVE-2014-125007
all versions
A vulnerability classified as problematic was found in FFmpeg 2.0. Affected by this vulnerability is the function intra_pred of th
5.3
MEDIUM
CVE-2014-125006
all versions
A vulnerability, which was classified as problematic, has been found in FFmpeg 2.0. Affected by this issue is the function output_
5.3
MEDIUM
CVE-2014-125005
all versions
A vulnerability, which was classified as problematic, was found in FFmpeg 2.0. This affects the function decode_vol_header of the
5.3
MEDIUM
CVE-2014-125004
all versions
A vulnerability has been found in FFmpeg 2.0 and classified as problematic. This vulnerability affects the function decode_hextile
5.3
MEDIUM
CVE-2014-125003
all versions
A vulnerability was found in FFmpeg 2.0 and classified as problematic. This issue affects the function get_siz of the file libavco
5.3
MEDIUM
CVE-2014-125002
all versions
A vulnerability was found in FFmpeg 2.0. It has been classified as problematic. Affected is the function dnxhd_init_rc of the file
5.3
MEDIUM
CVE-2022-1475
>= 4.2 and < 4.4.2
An integer overflow vulnerability was found in FFmpeg versions before 4.4.2 and before 5.0.1 in g729_parse() in llibavcodec/g729_p
5.5
MEDIUM
CVE-2020-23906
all versions
FFmpeg N-98388-g76a3ee996b allows attackers to cause a denial of service (DoS) via a crafted audio file due to insufficient verifi
5.5
MEDIUM
CVE-2021-38094
all versions
Integer Overflow vulnerability in function filter_sobel in libavfilter/vf_convolution.c in Ffmpeg 4.2.1, allows attackers to cause
8.8
HIGH
CVE-2021-38093
all versions
Integer Overflow vulnerability in function filter_robert in libavfilter/vf_convolution.c in Ffmpeg 4.2.1, allows attackers to caus
8.8
HIGH
CVE-2021-38092
all versions
Integer Overflow vulnerability in function filter_prewitt in libavfilter/vf_convolution.c in Ffmpeg 4.2.1, allows attackers to cau
8.8
HIGH
CVE-2021-38091
all versions
Integer Overflow vulnerability in function filter16_sobel in libavfilter/vf_convolution.c in Ffmpeg 4.2.1, allows attackers to cau
8.8
HIGH
CVE-2021-38090
all versions
Integer Overflow vulnerability in function filter16_roberts in libavfilter/vf_convolution.c in Ffmpeg 4.2.1, allows attackers to c
8.8
HIGH
CVE-2020-20902
all versions
A CWE-125: Out-of-bounds read vulnerability exists in long_term_filter function in g729postfilter.c in FFmpeg 4.2.1 during computa
6.5
MEDIUM
CVE-2020-20898
all versions
Integer Overflow vulnerability in function filter16_prewitt in libavfilter/vf_convolution.c in Ffmpeg 4.2.1, allows attackers to c
8.8
HIGH
CVE-2020-20896
all versions
An issue was discovered in function latm_write_packet in libavformat/latmenc.c in Ffmpeg 4.2.1, allows attackers to cause a Denial
8.8
HIGH
CVE-2020-20892
all versions
An issue was discovered in function filter_frame in libavfilter/vf_lenscorrection.c in Ffmpeg 4.2.1, allows attackers to cause a D
8.8
HIGH
CVE-2020-20891
all versions
Buffer Overflow vulnerability in function config_input in libavfilter/vf_gblur.c in Ffmpeg 4.2.1, allows attackers to cause a Deni
8.8
HIGH
CVE-2021-38171
all versions
adts_decode_extradata in libavformat/adtsenc.c in FFmpeg 4.4 does not check the init_get_bits return value, which is a necessary s
9.8
CRITICAL
CVE-2021-38291
< 4.1.7
FFmpeg version (git commit de8e6e67e7523e48bb27ac224a0b446df05e1640) suffers from a an assertion failure at src/libavutil/mathemat
7.5
HIGH
CVE-2020-21697
all versions
A heap-use-after-free in the mpeg_mux_write_packet function in libavformat/mpegenc.c of FFmpeg 4.2 allows to cause a denial of ser
6.5
MEDIUM
CVE-2020-21688
all versions
A heap-use-after-free in the av_freep function in libavutil/mem.c of FFmpeg 4.2 allows attackers to execute arbitrary code.
8.8
HIGH
CVE-2021-3566
< 4.3
Prior to ffmpeg version 4.3, the tty demuxer did not have a 'read_probe' function assigned to it. By crafting a legitimate "ffconc
5.5
MEDIUM
CVE-2021-38114
all versions
libavcodec/dnxhddec.c in FFmpeg 4.4 does not check the return value of the init_vlc function, a similar issue to CVE-2013-0868.
5.5
MEDIUM
CVE-2021-33815
all versions
dwa_uncompress in libavcodec/exr.c in FFmpeg 4.4 allows an out-of-bounds array access because dc_count is not strictly checked.
8.8
HIGH
CVE-2020-22056
all versions
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the config_input function in af_acrossover.c.
6.5
MEDIUM
CVE-2020-22054
all versions
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the av_dict_set function in dict.c.
6.5
MEDIUM
CVE-2020-22051
all versions
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the filter_frame function in vf_tile.c.
6.5
MEDIUM
CVE-2020-22049
all versions
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the wtvfile_open_sector function in wtvdec.c.
6.5
MEDIUM
CVE-2020-22048
all versions
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the ff_frame_pool_get function in framepool.c.
6.5
MEDIUM
CVE-2020-22046
all versions
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the avpriv_float_dsp_allocl function in libavutil/f
6.5
MEDIUM
CVE-2020-22044
all versions
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the url_open_dyn_buf_internal function in libavform
6.5
MEDIUM
CVE-2020-22043
all versions
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak at the fifo_alloc_common function in libavutil/fifo.c.
6.5
MEDIUM
CVE-2020-22042
all versions
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak is affected by: memory leak in the link_filter_inouts
6.5
MEDIUM
CVE-2020-22041
all versions
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the av_buffersrc_add_frame_flags function in buffer
6.5
MEDIUM
CVE-2020-22040
all versions
A Denial of Service vulnerability exists in FFmpeg 4.2 idue to a memory leak in the v_frame_alloc function in frame.c.
6.5
MEDIUM
CVE-2020-22039
all versions
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the inavi_add_ientry function.
6.5
MEDIUM
CVE-2020-22038
all versions
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the ff_v4l2_m2m_create_context function in v4l2_m2m
6.5
MEDIUM
CVE-2020-22037
all versions
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in avcodec_alloc_context3 at options.c.
6.5
MEDIUM
CVE-2020-22036
all versions
A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_intra at libavfilter/vf_bwdif.c, which might lead to mem
8.8
HIGH
CVE-2020-22035
all versions
A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 in get_block_row at libavfilter/vf_bm3d.c, which might lead to mem
8.8
HIGH
CVE-2020-22034
all versions
A heap-based Buffer Overflow vulnerability exists FFmpeg 4.2 at libavfilter/vf_floodfill.c, which might lead to memory corruption
8.8
HIGH
CVE-2020-22033
all versions
A heap-based Buffer Overflow Vulnerability exists FFmpeg 4.2 at libavfilter/vf_vmafmotion.c in convolution_y_8bit, which could let
6.5
MEDIUM
CVE-2020-22032
all versions
A heap-based Buffer Overflow vulnerability exists FFmpeg 4.2 at libavfilter/vf_edgedetect.c in gaussian_blur, which might lead to
8.8
HIGH
CVE-2020-22027
all versions
A heap-based Buffer Overflow vulnerability exits in FFmpeg 4.2 in deflate16 at libavfilter/vf_neighbor.c, which might lead to memo
8.8
HIGH
CVE-2020-22025
all versions
A heap-based Buffer Overflow vulnerability exists in gaussian_blur at libavfilter/vf_edgedetect.c, which might lead to memory corr
8.8
HIGH
CVE-2020-22023
all versions
A heap-based Buffer Overflow vulnerabililty exists in FFmpeg 4.2 in filter_frame at libavfilter/vf_bitplanenoise.c, which might le
8.8
HIGH
CVE-2020-22022
all versions
A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_frame at libavfilter/vf_fieldorder.c, which might lead t
8.8
HIGH
CVE-2020-22017
all versions
A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at ff_fill_rectangle in libavfilter/drawutils.c, which might lead
8.8
HIGH
CVE-2020-22016
all versions
A heap-based Buffer Overflow vulnerability in FFmpeg 4.2 at libavcodec/get_bits.h when writing .mov files, which might lead to mem
8.8
HIGH
CVE-2020-22031
all versions
A Heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at libavfilter/vf_w3fdif.c in filter16_complex_low, which might le
8.8
HIGH
CVE-2020-22030
all versions
A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at libavfilter/af_afade.c in crossfade_samples_fltp, which might l
8.8
HIGH
CVE-2020-22029
all versions
A heap-based Buffer Overflow vulnerability exists in FFmpeg 4.2 at libavfilter/vf_colorconstancy.c: in slice_get_derivative, which
8.8
HIGH
CVE-2020-22028
all versions
Buffer Overflow vulnerability exists in FFmpeg 4.2 in filter_vertically_8 at libavfilter/vf_avgblur.c, which could cause a remote
6.5
MEDIUM
CVE-2020-22026
all versions
Buffer Overflow vulnerability exists in FFmpeg 4.2 in the config_input function at libavfilter/af_tremolo.c, which could let a rem
6.5
MEDIUM
CVE-2020-22024
all versions
Buffer Overflow vulnerability in FFmpeg 4.2 at the lagfun_frame16 function in libavfilter/vf_lagfun.c, which could let a remote ma
6.5
MEDIUM
CVE-2020-22021
all versions
Buffer Overflow vulnerability in FFmpeg 4.2 at filter_edges function in libavfilter/vf_yadif.c, which could let a remote malicious
6.5
MEDIUM
CVE-2020-22020
all versions
Buffer Overflow vulnerability in FFmpeg 4.2 in the build_diff_map function in libavfilter/vf_fieldmatch.c, which could let a remot
6.5
MEDIUM
CVE-2020-22019
all versions
Buffer Overflow vulnerability in FFmpeg 4.2 at convolution_y_10bit in libavfilter/vf_vmafmotion.c, which could let a remote malici
6.5
MEDIUM
CVE-2020-22015
all versions
Buffer Overflow vulnerability in FFmpeg 4.2 in mov_write_video_tag due to the out of bounds in libavformat/movenc.c, which could l
8.8
HIGH
CVE-2020-24020
all versions
Buffer Overflow vulnerability in FFMpeg 4.2.3 in dnn_execute_layer_pad in libavfilter/dnn/dnn_backend_native_layer_pad.c due to a
8.8
HIGH
CVE-2020-20453
all versions
FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aaccoder, which allows a remote malicious user to cause a Denial o
6.5
MEDIUM
CVE-2020-20451
all versions
Denial of Service issue in FFmpeg 4.2 due to resource management errors via fftools/cmdutils.c.
7.5
HIGH
CVE-2020-20450
all versions
FFmpeg 4.2 is affected by null pointer dereference passed as argument to libavformat/aviobuf.c, which could cause a Denial of Serv
7.5
HIGH
CVE-2020-20448
all versions
FFmpeg 4.1.3 is affected by a Divide By Zero issue via libavcodec/ratecontrol.c, which allows a remote malicious user to cause a D
6.5
MEDIUM
CVE-2020-20446
all versions
FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aacpsy.c, which allows a remote malicious user to cause a Denial o
6.5
MEDIUM
CVE-2020-20445
all versions
FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/lpc.h, which allows a remote malicious user to cause a Denial of S
6.5
MEDIUM
CVE-2020-21041
all versions
Buffer Overflow vulnerability exists in FFmpeg 4.1 via apng_do_inverse_blend in libavcodec/pngenc.c, which could let a remote mali
7.5
HIGH
CVE-2021-30123
all versions
FFmpeg <=4.3 contains a buffer overflow vulnerability in libavcodec through a crafted file that may lead to remote code execution.
8.8
HIGH
CVE-2020-24995
all versions
Buffer overflow vulnerability in sniff_channel_order function in aacdec_template.c in ffmpeg 3.1.2, allows attackers to execute ar
7.8
HIGH
CVE-2020-35965
>= 4.3.1 and < 4.4
decode_frame in libavcodec/exr.c in FFmpeg 4.3.1 has an out-of-bounds write because of errors in calculations of when to perform m
7.5
HIGH
CVE-2020-35964
all versions
track_header in libavformat/vividas.c in FFmpeg 4.3.1 has an out-of-bounds write because of incorrect extradata packing.
6.5
MEDIUM
CVE-2020-14212
>= 4.3 and < 4.3.1
FFmpeg through 4.3 has a heap-based buffer overflow in avio_get_str in libavformat/aviobuf.c because dnn_backend_native.c calls ff
8.8
HIGH
CVE-2020-13904
all versions
FFmpeg 2.8 and 4.2.3 has a use-after-free via a crafted EXTINF duration in an m3u8 file because parse_playlist in libavformat/hls.
5.5
MEDIUM
CVE-2020-12284
all versions
cbs_jpeg_split_fragment in libavcodec/cbs_jpeg.c in FFmpeg 4.1 and 4.2.2 has a heap-based buffer overflow during JPEG_MARKER_SOS h
9.8
CRITICAL
CVE-2014-4610
< 0.10.14
Integer overflow in the get_len function in libavutil/lzo.c in FFmpeg before 0.10.14, 1.1.x before 1.1.12, 1.2.x before 1.2.7, 2.0
8.8
HIGH
CVE-2019-17542
< 2.8.16
FFmpeg before 4.2 has a heap-based buffer overflow in vqa_decode_chunk because of an out-of-array access in vqa_decode_init in lib
9.8
CRITICAL
CVE-2019-17539
< 3.4.7
In FFmpeg before 4.2, avcodec_open2 in libavcodec/utils.c allows a NULL pointer dereference and possibly unspecified other impact
9.8
CRITICAL
CVE-2019-15942
<= 4.2
FFmpeg through 4.2 has a "Conditional jump or move depends on uninitialised value" issue in h2645_parse because alloc_rbsp_buffer
8.8
HIGH
CVE-2019-13390
all versions
In FFmpeg 4.1.3, there is a division by zero at adx_write_trailer in libavformat/rawenc.c.
6.5
MEDIUM
CVE-2019-13312
all versions
block_cmp() in libavcodec/zmbvenc.c in FFmpeg 4.1.3 has a heap-based buffer over-read.
8.8
HIGH
CVE-2019-12730
< 3.2.14
aa_read_header in libavformat/aadec.c in FFmpeg before 3.2.14 and 4.x before 4.1.4 does not check for sscanf failure and consequen
9.8
CRITICAL
CVE-2019-11339
>= 4.0 and < 4.0.4
The studio profile decoder in libavcodec/mpeg4videodec.c in FFmpeg 4.0 before 4.0.4 and 4.1 before 4.1.2 allows remote attackers t
8.8
HIGH
CVE-2019-11338
all versions
libavcodec/hevcdec.c in FFmpeg 3.4 and 4.1.2 mishandles detection of duplicate first slices, which allows remote attackers to caus
8.8
HIGH
CVE-2019-9721
all versions
A denial of service in the subtitle decoder in FFmpeg 3.2 and 4.1 allows attackers to hog the CPU via a crafted video file in Matr
6.5
MEDIUM
CVE-2019-9718
all versions
In FFmpeg 3.2 and 4.1, a denial of service in the subtitle decoder allows attackers to hog the CPU via a crafted video file in Mat
6.5
MEDIUM
CVE-2019-1000016
all versions
FFMPEG version 4.1 contains a CWE-129: Improper Validation of Array Index vulnerability in libavcodec/cbs_av1.c that can result in
6.5
MEDIUM
CVE-2018-15822
<= 2.8
The flv_write_packet function in libavformat/flvenc.c in FFmpeg through 2.8 does not check for an empty audio packet, leading to a
7.5
HIGH
CVE-2018-1999015
<= 4.0.1
FFmpeg before commit 5aba5b89d0b1d73164d3b81764828bb8b20ff32a contains an out of array read vulnerability in ASF_F format demuxer
6.5
MEDIUM
CVE-2018-1999014
<= 4.0.1
FFmpeg before commit bab0716c7f4793ec42e05a5aa7e80d82a0dd4e75 contains an out of array access vulnerability in MXF format demuxer
6.5
MEDIUM
CVE-2018-1999013
<= 4.0.1
FFmpeg before commit a7e032a277452366771951e29fd0bf2bd5c029f0 contains a use-after-free vulnerability in the realmedia demuxer tha
6.5
MEDIUM
CVE-2018-1999012
<= 4.0.1
FFmpeg before commit 9807d3976be0e92e4ece3b4b1701be894cd7c2e1 contains a CWE-835: Infinite loop vulnerability in pva format demuxe
6.5
MEDIUM
CVE-2018-1999011
<= 4.0.1
FFmpeg before commit 2b46ebdbff1d8dec7a3d8ea280a612b91a582869 contains a Buffer Overflow vulnerability in asf_o format demuxer tha
8.8
HIGH
CVE-2018-1999010
< 3.4.3
FFmpeg before commit cced03dd667a5df6df8fd40d8de0bff477ee02e8 contains multiple out of array access vulnerabilities in the mms pro
9.8
CRITICAL
CVE-2018-14395
all versions
libavformat/movenc.c in FFmpeg 3.2 and 4.0.2 allows attackers to cause a denial of service (application crash caused by a divide-b
6.5
MEDIUM
CVE-2018-14394
< 4.0.2
libavformat/movenc.c in FFmpeg before 4.0.2 allows attackers to cause a denial of service (application crash caused by a divide-by
6.5
MEDIUM
CVE-2018-13305
all versions
In FFmpeg 4.0.1, due to a missing check for negative values of the mquant variable, the vc1_put_blocks_clamped function in libavco
8.1
HIGH
CVE-2018-13304
all versions
In libavcodec in FFmpeg 4.0.1, improper maintenance of the consistency between the context profile field and studio_profile in lib
6.5
MEDIUM
CVE-2018-13303
all versions
In FFmpeg 4.0.1, a missing check for failure of a call to init_get_bits8() in the avpriv_ac3_parse_header function in libavcodec/a
6.5
MEDIUM
CVE-2018-13302
all versions
In FFmpeg 4.0.1, improper handling of frame types (other than EAC3_FRAME_TYPE_INDEPENDENT) that have multiple independent substrea
8.8
HIGH
CVE-2018-13301
all versions
In FFmpeg 4.0.1, due to a missing check of a profile value before setting it, the ff_mpeg4_decode_picture_header function in libav
6.5
MEDIUM
CVE-2018-13300
all versions
In FFmpeg 3.2 and 4.0.1, an improper argument (AVCodecParameters) passed to the avpriv_request_sample function in the handle_eac3
8.1
HIGH
CVE-2018-12460
all versions
libavcodec in FFmpeg 4.0 may trigger a NULL pointer dereference if the studio profile is incorrectly detected while converting a c
6.5
MEDIUM
CVE-2018-12459
all versions
An inconsistent bits-per-sample value in the ff_mpeg4_decode_picture_header function in libavcodec/mpeg4videodec.c in FFmpeg 4.0 m
6.5
MEDIUM
CVE-2018-12458
all versions
An improper integer type in the mpeg4_encode_gop_header function in libavcodec/mpeg4videoenc.c in FFmpeg 2.8 and 4.0 may trigger a
6.5
MEDIUM
CVE-2018-7751
<= 3.4.2
The svg_probe function in libavformat/img2dec.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (Infi
6.5
MEDIUM
CVE-2018-10001
<= 3.4.2
The decode_init function in libavcodec/utvideodec.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (
6.5
MEDIUM
CVE-2018-9841
<= 3.4.2
The export function in libavfilter/vf_signature.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (ou
8.8
HIGH
CVE-2018-7557
>= 2.8 and <= 3.4.2
The decode_init function in libavcodec/utvideodec.c in FFmpeg 2.8 through 3.4.2 allows remote attackers to cause a denial of servi
6.5
MEDIUM
CVE-2018-6912
<= 3.4.2
The decode_plane function in libavcodec/utvideodec.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service
6.5
MEDIUM
CVE-2012-5360
< 0.11
Libavcodec in FFmpeg before 0.11 allows remote attackers to execute arbitrary code via a crafted QT file.
8.8
HIGH
CVE-2012-5359
< 0.11
Libavcodec in FFmpeg before 0.11 allows remote attackers to execute arbitrary code via a crafted ASF file.
8.8
HIGH
CVE-2018-6621
<= 3.2
The decode_frame function in libavcodec/utvideodec.c in FFmpeg through 3.2 allows remote attackers to cause a denial of service (o
6.5
MEDIUM
CVE-2018-6392
<= 3.4.1
The filter_slice function in libavfilter/vf_transpose.c in FFmpeg through 3.4.1 allows remote attackers to cause a denial of servi
6.5
MEDIUM
CVE-2015-1208
< 2.4.6
Integer underflow in the mov_read_default function in libavformat/mov.c in FFmpeg before 2.4.6 allows remote attackers to obtain s
5.5
MEDIUM
CVE-2017-1000460
all versions
In line libavcodec/h264dec.c:500 in libav(v13_dev0), ffmpeg(n3.4), chromium(56 prior Feb 13, 2017), the return value of init_get_b
6.5
MEDIUM
CVE-2017-9608
< 3.2.6
The dnxhd decoder in FFmpeg before 3.2.6, and 3.3.x before 3.3.3 allows remote attackers to cause a denial of service (NULL pointe
6.5
MEDIUM
CVE-2017-17555
all versions
The swri_audio_convert function in audioconvert.c in FFmpeg libswresample through 3.0.101, as used in FFmpeg 3.4.1, aubio 0.4.6, a
6.5
MEDIUM
CVE-2017-17081
all versions
The gmc_mmx function in libavcodec/x86/mpegvideodsp.c in FFmpeg 2.3 and 3.4 does not properly validate widths and heights, which a
6.5
MEDIUM
CVE-2017-16840
all versions
The VC-2 Video Compression encoder in FFmpeg 3.0 and 3.4 allows remote attackers to cause a denial of service (out-of-bounds read)
9.8
CRITICAL
CVE-2017-15672
<= 3.3.4
The read_header function in libavcodec/ffv1dec.c in FFmpeg 2.4 and 3.3.4 and possibly earlier allows remote attackers to have unsp
8.8
HIGH
CVE-2017-15186
<= 3.3.4
Double free vulnerability in FFmpeg 3.3.4 and earlier allows remote attackers to cause a denial of service via a crafted AVI file.
6.5
MEDIUM
CVE-2017-14767
<= 3.3.3
The sdp_parse_fmtp_config_h264 function in libavformat/rtpdec_h264.c in FFmpeg before 3.3.4 mishandles empty sprop-parameter-sets
8.8
HIGH
CVE-2017-14225
all versions
The av_color_primaries_name function in libavutil/pixdesc.c in FFmpeg 3.3.3 may return a NULL pointer depending on a value contain
8.8
HIGH
CVE-2017-14223
all versions
In libavformat/asfdec_f.c in FFmpeg 3.3.3, a DoS in asf_build_simple_index() due to lack of an EOF (End of File) check might cause
6.5
MEDIUM
CVE-2017-14222
all versions
In libavformat/mov.c in FFmpeg 3.3.3, a DoS in read_tfra() due to lack of an EOF (End of File) check might cause huge CPU and memo
6.5
MEDIUM
CVE-2017-14171
all versions
In libavformat/nsvdec.c in FFmpeg 2.4 and 3.3.3, a DoS in nsv_parse_NSVf_header() due to lack of an EOF (End of File) check might
6.5
MEDIUM
CVE-2017-14170
all versions
In libavformat/mxfdec.c in FFmpeg 3.3.3 - 2.4, a DoS in mxf_read_index_entry_array() due to lack of an EOF (End of File) check mig
6.5
MEDIUM
CVE-2017-14169
all versions
In the mxf_read_primer_pack function in libavformat/mxfdec.c in FFmpeg 3.3.3 - 2.4, an integer signedness error might occur when a
8.8
HIGH
CVE-2017-14059
all versions
In FFmpeg 3.3.3, a DoS in cine_read_header() due to lack of an EOF check might cause huge CPU and memory consumption. When a craft
6.5
MEDIUM
CVE-2017-14058
all versions
In FFmpeg 2.4 and 3.3.3, the read_data function in libavformat/hls.c does not restrict reload attempts for an insufficient list, w
6.5
MEDIUM
CVE-2017-14057
all versions
In FFmpeg 3.3.3, a DoS in asf_read_marker() due to lack of an EOF (End of File) check might cause huge CPU and memory consumption.
6.5
MEDIUM
CVE-2017-14056
all versions
In libavformat/rl2.c in FFmpeg 3.3.3, a DoS in rl2_read_header() due to lack of an EOF (End of File) check might cause huge CPU an
6.5
MEDIUM
CVE-2017-14055
all versions
In libavformat/mvdec.c in FFmpeg 3.3.3, a DoS in mv_read_header() due to lack of an EOF (End of File) check might cause huge CPU a
6.5
MEDIUM
CVE-2017-14054
all versions
In libavformat/rmdec.c in FFmpeg 3.3.3, a DoS in ivr_read_header() due to lack of an EOF (End of File) check might cause huge CPU
6.5
MEDIUM
CVE-2013-0870
all versions
The 'vp3_decode_frame' function in FFmpeg 1.1.4 moves threads check out of header packet type check.
9.8
CRITICAL
CVE-2012-2805
all versions
Unspecified vulnerability in FFMPEG 0.10 allows remote attackers to cause a denial of service.
7.5
HIGH
CVE-2012-2781
<= 0.10.0
Unspecified vulnerability in FFmpeg before 0.10.3 has unknown impact and attack vectors, a different vulnerability than CVE-2012-2
9.8
CRITICAL
CVE-2012-2780
<= 0.10.0
Unspecified vulnerability in FFmpeg before 0.10.3 has unknown impact and attack vectors, a different vulnerability than CVE-2012-2
9.8
CRITICAL
CVE-2012-2778
<= 0.10.0
Unspecified vulnerability in FFmpeg before 0.10.3 has unknown impact and attack vectors, a different vulnerability than CVE-2012-2
9.8
CRITICAL
CVE-2012-2773
<= 0.10.0
Unspecified vulnerability in FFmpeg before 0.10.3 has unknown impact and attack vectors, a different vulnerability than CVE-2012-2
9.8
CRITICAL
CVE-2012-2771
< 0.10.3
Unspecified vulnerability in FFmpeg before 0.10.3 has unknown impact and attack vectors, a different vulnerability than CVE-2012-2
9.8
CRITICAL
CVE-2017-11719
<= 3.3.2
The dnxhd_decode_header function in libavcodec/dnxhddec.c in FFmpeg 3.0 through 3.3.2 allows remote attackers to cause a denial of
7.8
HIGH
CVE-2017-11665
all versions
The ff_amf_get_field_value function in libavformat/rtmppkt.c in FFmpeg 3.3.2 allows remote RTMP servers to cause a denial of servi
7.5
HIGH
CVE-2017-11399
<= 3.3.2
Integer overflow in the ape_decode_frame function in libavcodec/apedec.c in FFmpeg 2.4 through 3.3.2 allows remote attackers to ca
7.8
HIGH
CVE-2017-9996
all versions
The cdxl_decode_frame function in libavcodec/cdxl.c in FFmpeg 2.8.x before 2.8.12, 3.0.x before 3.0.8, 3.1.x before 3.1.8, 3.2.x b
7.8
HIGH
CVE-2017-9995
all versions
libavcodec/scpr.c in FFmpeg 3.3 before 3.3.1 does not properly validate height and width data, which allows remote attackers to ca
7.8
HIGH
CVE-2017-9994
< 2.8.12
libavcodec/webp.c in FFmpeg before 2.8.12, 3.0.x before 3.0.8, 3.1.x before 3.1.8, 3.2.x before 3.2.5, and 3.3.x before 3.3.1 does
7.8
HIGH
CVE-2017-9993
< 2.8.12
FFmpeg before 2.8.12, 3.0.x and 3.1.x before 3.1.9, 3.2.x before 3.2.6, and 3.3.x before 3.3.2 does not properly restrict HTTP Liv
7.5
HIGH
CVE-2017-9992
< 2.8.12
Heap-based buffer overflow in the decode_dds1 function in libavcodec/dfa.c in FFmpeg before 2.8.12, 3.0.x before 3.0.8, 3.1.x befo
8.8
HIGH
CVE-2017-9991
<= 2.8.11
Heap-based buffer overflow in the xwd_decode_frame function in libavcodec/xwddec.c in FFmpeg before 2.8.12, 3.0.x before 3.0.8, 3.
7.8
HIGH
CVE-2017-9990
<= 3.3
Stack-based buffer overflow in the color_string_to_rgba function in libavcodec/xpmdec.c in FFmpeg 3.3 before 3.3.1 allows remote a
8.8
HIGH
CVE-2017-7866
<= 2.8.9
FFmpeg before 2017-01-23 has an out-of-bounds write caused by a stack-based buffer overflow related to the decode_zbuf function in
9.8
CRITICAL
CVE-2017-7865
<= 2.8.9
FFmpeg before 2017-01-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the ipvideo_decode_block_opc
9.8
CRITICAL
CVE-2017-7863
<= 2.8.10
FFmpeg before 2017-02-04 has an out-of-bounds write caused by a heap-based buffer overflow related to the decode_frame_common func
9.8
CRITICAL
CVE-2017-7862
<= 2.8.10
FFmpeg before 2017-02-07 has an out-of-bounds write caused by a heap-based buffer overflow related to the decode_frame function in
9.8
CRITICAL
CVE-2017-7859
<= 3.2.4
FFmpeg before 2017-03-05 has an out-of-bounds write caused by a heap-based buffer overflow related to the ff_h264_slice_context_in
9.8
CRITICAL
CVE-2012-5361
<= 0.10.15
Libavcodec in FFmpeg before 0.11 allows remote attackers to execute arbitrary code via a crafted WMV file.
7.8
HIGH
CVE-2016-10192
<= 2.8.9
Heap-based buffer overflow in ffserver.c in FFmpeg before 2.8.10, 3.0.x before 3.0.5, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 a
9.8
CRITICAL
CVE-2016-10191
<= 2.8.9
Heap-based buffer overflow in libavformat/rtmppkt.c in FFmpeg before 2.8.10, 3.0.x before 3.0.5, 3.1.x before 3.1.6, and 3.2.x bef
9.8
CRITICAL
CVE-2016-10190
<= 2.8.9
Heap-based buffer overflow in libavformat/http.c in FFmpeg before 2.8.10, 3.0.x before 3.0.5, 3.1.x before 3.1.6, and 3.2.x before
9.8
CRITICAL
CVE-2016-6920
<= 3.1.2
Heap-based buffer overflow in the decode_block function in libavcodec/exr.c in FFmpeg before 3.1.3 allows remote attackers to caus
7.5
HIGH
CVE-2016-6164
<= 2.8.7
Integer overflow in the mov_build_index function in libavformat/mov.c in FFmpeg before 2.8.8, 3.0.x before 3.0.3 and 3.1.x before
9.8
CRITICAL
CVE-2016-9561
<= 3.2
The che_configure function in libavcodec/aacdec_template.c in FFmpeg before 3.2.1 allows remote attackers to cause a denial of ser
5.5
MEDIUM
CVE-2016-8595
<= 3.1.4
The gsm_parse function in libavcodec/gsm_parser.c in FFmpeg before 3.1.5 allows remote attackers to cause a denial of service (ass
5.5
MEDIUM
CVE-2016-7905
<= 3.1.3
The read_gab2_sub function in libavformat/avidec.c in FFmpeg before 3.1.4 allows remote attackers to cause a denial of service (NU
5.5
MEDIUM
CVE-2016-7785
<= 3.1.3
The avi_read_seek function in libavformat/avidec.c in FFmpeg before 3.1.4 allows remote attackers to cause a denial of service (as
5.5
MEDIUM
CVE-2016-7562
<= 3.1.3
The ff_draw_pc_font function in libavcodec/cga_data.c in FFmpeg before 3.1.4 allows remote attackers to cause a denial of service
5.5
MEDIUM
CVE-2016-7555
<= 3.1.3
The avi_read_header function in libavformat/avidec.c in FFmpeg before 3.1.4 is vulnerable to memory leak when decoding an AVI file
5.5
MEDIUM
CVE-2016-7502
<= 3.1.3
The cavs_idct8_add_c function in libavcodec/cavsdsp.c in FFmpeg before 3.1.4 is vulnerable to reading out-of-bounds memory when de
7.8
HIGH
CVE-2016-7450
<= 3.1.3
The ff_log2_16bit_c function in libavutil/intmath.h in FFmpeg before 3.1.4 is vulnerable to reading out-of-bounds memory when it d
7.8
HIGH
CVE-2016-7122
<= 3.1.3
The avi_read_nikon function in libavformat/avidec.c in FFmpeg before 3.1.4 is vulnerable to infinite loop when it decodes an AVI f
5.5
MEDIUM
CVE-2016-6881
<= 3.1.2
The zlib_refill function in libavformat/swfdec.c in FFmpeg before 3.1.3 allows remote attackers to cause an infinite loop denial o
5.5
MEDIUM
CVE-2016-6671
<= 3.1.1
The raw_decode function in libavcodec/rawdec.c in FFmpeg before 3.1.2 allows remote attackers to cause a denial of service (memory
7.8
HIGH
CVE-2016-3062
<= 0.10.15
The mov_read_dref function in libavformat/mov.c in Libav before 11.7 and FFmpeg before 0.11 allows remote attackers to cause a den
8.8
HIGH
CVE-2016-2330
<= 2.8.5
libavcodec/gif.c in FFmpeg before 2.8.6 does not properly calculate a buffer size, which allows remote attackers to cause a denial
8.8
HIGH
CVE-2016-2329
<= 2.8.5
libavcodec/tiff.c in FFmpeg before 2.8.6 does not properly validate RowsPerStrip values and YCbCr chrominance subsampling factors,
8.8
HIGH
CVE-2016-2328
<= 2.8.5
libswscale/swscale_unscaled.c in FFmpeg before 2.8.6 does not validate certain height values, which allows remote attackers to cau
8.8
HIGH
CVE-2016-2327
<= 2.8.4
libavcodec/pngenc.c in FFmpeg before 2.8.5 uses incorrect line sizes in certain row calculations, which allows remote attackers to
8.8
HIGH
CVE-2016-2326
<= 2.8.4
Integer overflow in the asf_write_packet function in libavformat/asfenc.c in FFmpeg before 2.8.5 allows remote attackers to cause
8.8
HIGH
CVE-2016-2213
<= 2.8.5
The jpeg2000_decode_tile function in libavcodec/jpeg2000dec.c in FFmpeg before 2.8.6 allows remote attackers to cause a denial of
6.5
MEDIUM
CVE-2016-1898
all versions
FFmpeg 2.x allows remote attackers to conduct cross-origin attacks and read arbitrary files by using the subfile protocol in an HT
5.5
MEDIUM
CVE-2016-1897
all versions
FFmpeg 2.x allows remote attackers to conduct cross-origin attacks and read arbitrary files by using the concat protocol in an HTT
5.5
MEDIUM
CVE-2015-8663
all versions
The ff_get_buffer function in libavcodec/utils.c in FFmpeg before 2.8.4 preserves width and height values after a failure, which a
8.3
HIGH
CVE-2015-8662
<= 2.8.3
The ff_dwt_decode function in libavcodec/jpeg2000dwt.c in FFmpeg before 2.8.4 does not validate the number of decomposition levels
7.3
HIGH
CVE-2015-8661
<= 2.8.2
The h264_slice_header_init function in libavcodec/h264_slice.c in FFmpeg before 2.8.3 does not validate the relationship between t
8.3
HIGH
CVE-2015-8365
all versions
The smka_decode_frame function in libavcodec/smacker.c in FFmpeg before 2.6.5, 2.7.x before 2.7.3, and 2.8.x through 2.8.2 does no
CVE-2015-8364
all versions
Integer overflow in the ff_ivi_init_planes function in libavcodec/ivi.c in FFmpeg before 2.6.5, 2.7.x before 2.7.3, and 2.8.x thro
CVE-2015-8363
all versions
The jpeg2000_read_main_headers function in libavcodec/jpeg2000dec.c in FFmpeg before 2.6.5, 2.7.x before 2.7.3, and 2.8.x through
CVE-2015-8219
<= 2.8.1
The init_tile function in libavcodec/jpeg2000dec.c in FFmpeg before 2.8.2 does not enforce minimum-value and maximum-value constra
CVE-2015-8218
<= 2.8.1
The decode_uncompressed function in libavcodec/faxcompr.c in FFmpeg before 2.8.2 does not validate uncompressed runs, which allows
CVE-2015-8217
<= 2.8.1
The ff_hevc_parse_sps function in libavcodec/hevc_ps.c in FFmpeg before 2.8.2 does not validate the Chroma Format Indicator, which
CVE-2015-8216
<= 2.8.1
The ljpeg_decode_yuv_scan function in libavcodec/mjpegdec.c in FFmpeg before 2.8.2 omits certain width and height checks, which al
CVE-2015-6761
<= 2.8.1
The update_dimensions function in libavcodec/vp8.c in FFmpeg through 2.8.1, as used in Google Chrome before 46.0.2490.71 and other
CVE-2015-6826
<= 2.7.1
The ff_rv34_decode_init_thread_copy function in libavcodec/rv34.c in FFmpeg before 2.7.2 does not initialize certain structure mem
CVE-2015-6825
<= 2.7.1
The ff_frame_thread_init function in libavcodec/pthread_frame.c in FFmpeg before 2.7.2 mishandles certain memory-allocation failur
CVE-2015-6824
<= 2.7.1
The sws_init_context function in libswscale/utils.c in FFmpeg before 2.7.2 does not initialize certain pixbuf data structures, whi
CVE-2015-6823
<= 2.7.1
The allocate_buffers function in libavcodec/alac.c in FFmpeg before 2.7.2 does not initialize certain context data, which allows r
CVE-2015-6822
<= 2.7.1
The destroy_buffers function in libavcodec/sanm.c in FFmpeg before 2.7.2 does not properly maintain height and width values in the
CVE-2015-6821
<= 2.7.1
The ff_mpv_common_init function in libavcodec/mpegvideo.c in FFmpeg before 2.7.2 does not properly maintain the encoding context,
CVE-2015-6820
<= 2.7.1
The ff_sbr_apply function in libavcodec/aacsbr.c in FFmpeg before 2.7.2 does not check for a matching AAC frame syntax element bef
CVE-2015-6819
<= 2.7.1
Multiple integer underflows in the ff_mjpeg_decode_frame function in libavcodec/mjpegdec.c in FFmpeg before 2.7.2 allow remote att
CVE-2015-6818
<= 2.7.1
The decode_ihdr_chunk function in libavcodec/pngdec.c in FFmpeg before 2.7.2 does not enforce uniqueness of the IHDR (aka image he
CVE-2015-1872
<= 2.5.3
The ff_mjpeg_decode_sof function in libavcodec/mjpegdec.c in FFmpeg before 2.5.4 does not validate the number of components in a J
CVE-2015-3395
all versions
The msrle_decode_pal4 function in msrledec.c in Libav before 10.7 and 11.x before 11.4 and FFmpeg before 2.0.7, 2.2.x before 2.2.1
CVE-2015-3417
<= 2.3.5
Use-after-free vulnerability in the ff_h264_free_tables function in libavcodec/h264.c in FFmpeg before 2.3.6 allows remote attacke
CVE-2014-9676
<= 2.1.4
The seg_write_packet function in libavformat/segment.c in ffmpeg 2.1.4 and earlier does not free the correct memory location, whic
CVE-2014-7937
<= 2.4.1
Multiple off-by-one errors in libavcodec/vorbisdec.c in FFmpeg before 2.4.2, as used in Google Chrome before 40.0.2214.91, allow r
CVE-2014-7933
<= 2.5.0
Use-after-free vulnerability in the matroska_read_seek function in libavformat/matroskadec.c in FFmpeg before 2.5.1, as used in Go
CVE-2014-9604
<= 2.5.1
libavcodec/utvideodec.c in FFmpeg before 2.5.2 does not check for a zero value of a slice height, which allows remote attackers to
CVE-2014-9603
<= 2.5.1
The vmd_decode function in libavcodec/vmdvideo.c in FFmpeg before 2.5.2 does not validate the relationship between a certain lengt
CVE-2014-9602
<= 2.5.1
libavcodec/xface.h in FFmpeg before 2.5.2 establishes certain digits and words array dimensions that do not satisfy a required mat
CVE-2014-9319
<= 2.1.5
The ff_hevc_decode_nal_sps function in libavcodec/hevc_ps.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 al
CVE-2014-9318
<= 2.1.5
The raw_decode function in libavcodec/rawdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote a
CVE-2014-9317
<= 2.1.5
The decode_ihdr_chunk function in libavcodec/pngdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows r
CVE-2014-9316
<= 2.1.5
The mjpeg_decode_app function in libavcodec/mjpegdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows
CVE-2014-8549
<= 2.4.1
libavcodec/on2avc.c in FFmpeg before 2.4.2 does not constrain the number of channels to at most 2, which allows remote attackers t
CVE-2014-8548
<= 2.4.1
Off-by-one error in libavcodec/smc.c in FFmpeg before 2.4.2 allows remote attackers to cause a denial of service (out-of-bounds ac
CVE-2014-8547
<= 2.4.1
libavcodec/gifdec.c in FFmpeg before 2.4.2 does not properly compute image heights, which allows remote attackers to cause a denia
CVE-2014-8546
<= 2.4.1
Integer underflow in libavcodec/cinepak.c in FFmpeg before 2.4.2 allows remote attackers to cause a denial of service (out-of-boun
CVE-2014-8545
<= 2.4.1
libavcodec/pngdec.c in FFmpeg before 2.4.2 accepts the monochrome-black format without verifying that the bits-per-pixel value is
CVE-2014-8544
<= 2.4.1
libavcodec/tiff.c in FFmpeg before 2.4.2 does not properly validate bits-per-pixel fields, which allows remote attackers to cause
CVE-2014-8543
<= 2.4.1
libavcodec/mmvideo.c in FFmpeg before 2.4.2 does not consider all lines of HHV Intra blocks during validation of image height, whi
CVE-2014-8542
<= 2.4.1
libavcodec/utils.c in FFmpeg before 2.4.2 omits a certain codec ID during enforcement of alignment, which allows remote attackers
CVE-2014-8541
<= 2.4.1
libavcodec/mjpegdec.c in FFmpeg before 2.4.2 considers only dimension differences, and not bits-per-pixel differences, when determ
CVE-2014-5272
<= 1.1.13
libavcodec/iff.c in FFMpeg before 1.1.14, 1.2.x before 1.2.8, 2.2.x before 2.2.7, and 2.3.x before 2.3.2 allows remote attackers t
CVE-2014-5271
<= 1.1.13
Heap-based buffer overflow in the encode_slice function in libavcodec/proresenc_kostya.c in FFMpeg before 1.1.14, 1.2.x before 1.2
CVE-2014-2099
<= 2.1.3
The msrle_decode_frame function in libavcodec/msrle.c in FFmpeg before 2.1.4 does not properly calculate line sizes, which allows
CVE-2014-2098
<= 2.1.3
libavcodec/wmalosslessdec.c in FFmpeg before 2.1.4 uses an incorrect data-structure size for certain coefficients, which allows re
CVE-2014-2097
<= 2.1.3
The tak_decode_frame function in libavcodec/takdec.c in FFmpeg before 2.1.4 does not properly validate a certain bits-per-sample v
CVE-2014-2263
<= 2.1
The mpegts_write_pmt function in the MPEG2 transport stream (aka DVB) muxer (libavformat/mpegtsenc.c) in FFmpeg, possibly 2.1 and
CVE-2012-6618
<= 1.0.1
The av_probe_input_buffer function in libavformat/utils.c in FFmpeg before 1.0.2, when running with certain -probesize values, all
CVE-2012-6617
<= 1.0.1
The prepare_sdp_description function in ffserver.c in FFmpeg before 1.0.2 allows remote attackers to cause a denial of service (cr
CVE-2012-6616
<= 1.0.1
The mov_text_decode_frame function in libavcodec/movtextdec.c in FFmpeg before 1.0.2 allows remote attackers to cause a denial of
CVE-2012-6615
<= 1.0.1
The ff_ass_split_override_codes function in libavcodec/ass_split.c in FFmpeg before 1.0.2 allows remote attackers to cause a denia
CVE-2013-4358
<= 0.11.3
libavcodec/h264.c in FFmpeg before 0.11.4 allows remote attackers to cause a denial of service (crash) via vectors related to alte
CVE-2013-7024
<= 2.0.1
The jpeg2000_decode_tile function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not consider the component number in certa
CVE-2013-7023
<= 2.0.1
The ff_combine_frame function in libavcodec/parser.c in FFmpeg before 2.1 does not properly handle certain memory-allocation error
CVE-2013-7022
<= 2.0.1
The g2m_init_buffers function in libavcodec/g2meet.c in FFmpeg before 2.1 does not properly allocate memory for tiles, which allow
CVE-2013-7021
<= 2.0.1
The filter_frame function in libavfilter/vf_fps.c in FFmpeg before 2.1 does not properly ensure the availability of FIFO content,
CVE-2013-7020
<= 2.0.1
The read_header function in libavcodec/ffv1dec.c in FFmpeg before 2.1 does not properly enforce certain bit-count and colorspace c
CVE-2013-7019
<= 2.0.1
The get_cox function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not properly validate the reduction factor, which allow
CVE-2013-7018
<= 2.0.1
libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not ensure the use of valid code-block dimension values, which allows remote at
CVE-2013-7017
<= 2.0.1
libavcodec/jpeg2000.c in FFmpeg before 2.1 allows remote attackers to cause a denial of service (invalid pointer dereference) or p
CVE-2013-7016
<= 2.0.1
The get_siz function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not ensure the expected sample separation, which allows
CVE-2013-7015
<= 2.0.1
The flashsv_decode_frame function in libavcodec/flashsv.c in FFmpeg before 2.1 does not properly validate a certain height value,
CVE-2013-7014
<= 2.0.1
Integer signedness error in the add_bytes_l2_c function in libavcodec/pngdsp.c in FFmpeg before 2.1 allows remote attackers to cau
CVE-2013-7013
<= 2.0.1
The g2m_init_buffers function in libavcodec/g2meet.c in FFmpeg before 2.1 uses an incorrect ordering of arithmetic operations, whi
CVE-2013-7012
<= 2.0.1
The get_siz function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not prevent attempts to use non-zero image offsets, whi
CVE-2013-7011
<= 2.0.1
The read_header function in libavcodec/ffv1dec.c in FFmpeg before 2.1 does not prevent changes to global parameters, which allows
CVE-2013-7010
<= 2.0.1
Multiple integer signedness errors in libavcodec/dsputil.c in FFmpeg before 2.1 allow remote attackers to cause a denial of servic
CVE-2013-7009
<= 2.0.1
The rpza_decode_stream function in libavcodec/rpza.c in FFmpeg before 2.1 does not properly maintain a pointer to pixel data, whic
CVE-2013-7008
<= 2.0.1
The decode_slice_header function in libavcodec/h264.c in FFmpeg before 2.1 incorrectly relies on a certain droppable field, which
CVE-2011-4351
<= 0.5.5
Buffer overflow in FFmpeg before 0.5.6, 0.6.x before 0.6.4, 0.7.x before 0.7.8, and 0.8.x before 0.8.8 allows remote attackers to
CVE-2011-3950
<= 0.9.1
The dirac_decode_data_unit function in libavcodec/diracdec.c in FFmpeg before 0.10 allows remote attackers to have an unspecified
CVE-2011-3949
<= 0.9.1
The dirac_unpack_idwt_params function in libavcodec/diracdec.c in FFmpeg before 0.10 allows remote attackers to have an unspecifie
CVE-2011-3946
<= 0.9.1
The ff_h264_decode_sei function in libavcodec/h264_sei.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impa
CVE-2011-3944
<= 0.9.1
The smacker_decode_header_tree function in libavcodec/smacker.c in FFmpeg before 0.10 allows remote attackers to have an unspecifi
CVE-2011-3941
<= 0.9.1
The decode_mb function in libavcodec/error_resilience.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impac
CVE-2011-3935
<= 0.9.1
The codec_get_buffer function in ffmpeg.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impact via vectors
CVE-2011-3934
<= 0.9.1
Double free vulnerability in the vp3_update_thread_context function in libavcodec/vp3.c in FFmpeg before 0.10 allows remote attack
CVE-2013-0859
<= 1.0
The add_doubles_metadata function in libavcodec/tiff.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact
CVE-2013-0858
<= 1.0.3
The atrac3_decode_init function in libavcodec/atrac3.c in FFmpeg before 1.0.4 allows remote attackers to have an unspecified impac
CVE-2013-0857
<= 1.0
The decode_frame_ilbm function in libavcodec/iff.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via
CVE-2013-0856
<= 1.0
The lpc_prediction function in libavcodec/alac.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via cr
CVE-2013-0855
<= 1.0
Integer overflow in the alac_decode_close function in libavcodec/alac.c in FFmpeg before 1.1 allows remote attackers to have an un
CVE-2013-0854
<= 1.0
The mjpeg_decode_scan_progressive_ac function in libavcodec/mjpegdec.c in FFmpeg before 1.1 allows remote attackers to have an uns
CVE-2013-0853
<= 1.0
The wavpack_decode_frame function in libavcodec/wavpack.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impa
CVE-2013-0852
<= 1.0
The parse_picture_segment function in libavcodec/pgssubdec.c in FFmpeg before 1.1 allows remote attackers to have an unspecified i
CVE-2013-0851
<= 1.0
The decode_frame function in libavcodec/eamad.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via cra
CVE-2013-0850
<= 1.0
The decode_slice_header function in libavcodec/h264.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact v
CVE-2013-0849
<= 1.0
The roq_decode_init function in libavcodec/roqvideodec.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impac
CVE-2013-0848
<= 1.0
The decode_init function in libavcodec/huffyuv.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via a
CVE-2013-0847
<= 1.0
The ff_id3v2_parse function in libavformat/id3v2.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via
CVE-2013-0846
<= 1.0
Array index error in the qdm2_decode_super_block function in libavcodec/qdm2.c in FFmpeg before 1.1 allows remote attackers to hav
CVE-2013-0845
<= 1.0.3
libavcodec/alsdec.c in FFmpeg before 1.0.4 allows remote attackers to have an unspecified impact via a crafted block length, which
CVE-2013-0844
<= 1.0.3
Off-by-one error in the adpcm_decode_frame function in libavcodec/adpcm.c in FFmpeg before 1.0.4 allows remote attackers to have a
CVE-2013-0869
<= 1.1.1
The field_end function in libavcodec/h264.c in FFmpeg before 1.1.2 allows remote attackers to have an unspecified impact via craft
CVE-2013-0868
<= 1.1.1
libavcodec/huffyuvdec.c in FFmpeg before 1.1.2 allows remote attackers to have an unspecified impact via crafted Huffyuv data, rel
CVE-2013-0867
<= 1.1.1
The decode_slice_header function in libavcodec/h264.c in FFmpeg before 1.1.2 does not properly check when the pixel format changes
CVE-2013-0866
<= 1.0.2
The aac_decode_init function in libavcodec/aacdec.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.2 allows remote attackers to have
CVE-2013-0865
<= 1.0.2
The vqa_decode_chunk function in libavcodec/vqavideo.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.2 allows remote attackers to ha
CVE-2013-0864
<= 1.1.1
The gif_copy_img_rect function in libavcodec/gifdec.c in FFmpeg before 1.1.2 performs an incorrect calculation for an "end pointer
CVE-2013-0863
<= 1.0.3
Buffer overflow in the rle_decode function in libavcodec/sanm.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.2 allows remote attack
CVE-2013-0862
<= 1.1.1
Multiple integer overflows in the process_frame_obj function in libavcodec/sanm.c in FFmpeg before 1.1.2 allow remote attackers to
CVE-2013-0861
<= 1.0.2
The avcodec_decode_audio4 function in libavcodec/utils.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.1 allows remote attackers to
CVE-2013-0860
<= 1.0.3
The ff_er_frame_end function in libavcodec/error_resilience.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.1 does not properly veri
CVE-2013-4265
<= 2.0
The av_reallocp_array function in libavutil/mem.c in FFmpeg before 2.0.1 has an unspecified impact and remote vectors related to a
CVE-2013-4264
<= 2.0
The kempf_decode_tile function in libavcodec/g2meet.c in FFmpeg before 2.0.1 allows remote attackers to cause a denial of service
CVE-2013-4263
<= 2.0
libavfilter in FFmpeg before 2.0.1 has unspecified impact and remote vectors related to a crafted "plane," which triggers an out-o
CVE-2013-0878
<= 1.1.2
The advance_line function in libavcodec/targa.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified impact via c
CVE-2013-0877
<= 1.1.2
The old_codec37 function in libavcodec/sanm.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified impact via cra
CVE-2013-0876
<= 1.1.2
Multiple integer overflows in the (1) old_codec37 and (2) old_codec47 functions in libavcodec/sanm.c in FFmpeg before 1.1.3 allow
CVE-2013-0875
<= 1.1.2
The ff_add_png_paeth_prediction function in libavcodec/pngdec.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecif
CVE-2013-0874
<= 1.1.2
The (1) doubles2str and (2) shorts2str functions in libavcodec/tiff.c in FFmpeg before 1.1.3 allow remote attackers to have an uns
CVE-2013-0873
<= 1.1.2
The read_header function in libavcodec/shorten.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified impact via
CVE-2013-0872
<= 1.1.2
The swr_init function in libswresample/swresample.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified impact v
CVE-2013-3675
<= 1.2
The process_frame_obj function in sanm.c in libavcodec in FFmpeg before 1.2.1 does not validate width and height values, which all
CVE-2013-3674
<= 1.2
The cdg_decode_frame function in cdgraphics.c in libavcodec in FFmpeg before 1.2.1 does not validate the presence of non-header da
CVE-2013-3673
<= 1.2
The gif_decode_frame function in gifdec.c in libavcodec in FFmpeg before 1.2.1 does not properly manage the disposal methods of fr
CVE-2013-3672
<= 1.2
The mm_decode_inter function in mmvideo.c in libavcodec in FFmpeg before 1.2.1 does not validate the relationship between a horizo
CVE-2013-3671
<= 1.2
The format_line function in log.c in libavutil in FFmpeg before 1.2.1 uses inapplicable offset data during a certain category calc
CVE-2013-3670
<= 1.2
The rle_unpack function in vmdav.c in libavcodec in FFmpeg git 20130328 through 20130501 does not properly use the bytestream2 API
CVE-2013-2496
<= 1.1.3
The msrle_decode_8_16_24_32 function in msrledec.c in libavcodec in FFmpeg through 1.1.3 does not properly determine certain end p
CVE-2013-2495
<= 1.1.3
The iff_read_header function in iff.c in libavformat in FFmpeg through 1.1.3 does not properly handle data sizes for Interchange F
CVE-2013-2277
<= 1.1.2
The ff_h264_decode_seq_parameter_set function in h264_ps.c in libavcodec in FFmpeg before 1.1.3 does not validate the relationship
CVE-2013-2276
<= 1.1.2
The avcodec_decode_audio4 function in utils.c in libavcodec in FFmpeg before 1.1.3 does not verify the decoding state before proce
CVE-2013-0894
<= 1.1.3
Buffer overflow in the vorbis_parse_setup_hdr_floors function in the Vorbis decoder in vorbisdec.c in libavcodec in FFmpeg through
CVE-2011-3937
<= 0.9.1
The H.263 codec (libavcodec/h263dec.c) in FFmpeg 0.7.x before 0.7.12, 0.8.x before 0.8.11, and unspecified versions before 0.10, a
CVE-2012-2804
<= 0.10.4
Unspecified vulnerability in libavcodec/indeo3.c in FFmpeg before 0.11 and Libav 0.8.x before 0.8.5 has unknown impact and attack
CVE-2012-2803
<= 0.10.4
Double free vulnerability in the mpeg_decode_frame function in libavcodec/mpeg12.c in FFmpeg before 0.11, and Libav 0.7.x before 0
CVE-2012-2802
<= 0.10.4
Unspecified vulnerability in the ac3_decode_frame function in libavcodec/ac3dec.c in FFmpeg before 0.11 and Libav 0.8.x before 0.8
CVE-2012-2801
<= 0.10.4
Unspecified vulnerability in libavcodec/avs.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 and 0.8.x before 0.8.4, has unkn
CVE-2012-2800
<= 0.10.4
Unspecified vulnerability in the ff_ivi_process_empty_tile function in libavcodec/ivi_common.c in FFmpeg before 0.11, and Libav 0.
CVE-2012-2799
<= 0.10.4
Unspecified vulnerability in libavcodec/wmalosslessdec.c in FFmpeg before 0.11 has unknown impact and attack vectors, related to t
CVE-2012-2798
<= 0.10.4
Unspecified vulnerability in the decode_dds1 function in libavcodec/dfa.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 and
CVE-2012-2797
<= 0.10.4
Unspecified vulnerability in the decode_frame_mp3on4 function in libavcodec/mpegaudiodec.c in FFmpeg before 0.11 and Libav 0.8.x b
CVE-2012-2796
<= 0.10.4
Unspecified vulnerability in the vc1_decode_frame function in libavcodec/vc1dec.c in FFmpeg before 0.11 and Libav 0.8.x before 0.8
CVE-2012-2795
<= 0.10.4
Multiple unspecified vulnerabilities in libavcodec/wmalosslessdec.c in FFmpeg before 0.11 have unknown impact and attack vectors r
CVE-2012-2794
<= 0.10.4
Unspecified vulnerability in the decode_mb_info function in libavcodec/indeo5.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.
CVE-2012-2793
<= 0.10.4
Unspecified vulnerability in the lag_decode_zero_run_line function in libavcodec/lagarith.c in FFmpeg before 0.11, and Libav 0.7.x
CVE-2012-2792
<= 0.10.4
Unspecified vulnerability in the decode_init function in libavcodec/wmalosslessdec.c in FFmpeg before 0.11 has unknown impact and
CVE-2012-2791
<= 0.10.4
Multiple unspecified vulnerabilities in the (1) decode_band_hdr function in indeo4.c and (2) ff_ivi_decode_blocks function in ivi_
CVE-2012-2790
<= 0.10.4
Unspecified vulnerability in the read_var_block_data function in libavcodec/alsdec.c in FFmpeg before 0.11, and Libav 0.7.x before
CVE-2012-2789
<= 0.10.4
Unspecified vulnerability in the avi_read_packet function in libavformat/avidec.c in FFmpeg before 0.11, and Libav 0.7.x before 0.
CVE-2012-2788
<= 0.10.4
Unspecified vulnerability in the avi_read_packet function in libavformat/avidec.c in FFmpeg before 0.11, and Libav 0.7.x before 0.
CVE-2012-2787
<= 0.10.4
Unspecified vulnerability in the decode_frame function in libavcodec/indeo4.c in FFmpeg before 0.11 and Libav 0.8.x before 0.8.4 h
CVE-2012-2786
<= 0.10.4
Unspecified vulnerability in the decode_wdlt function in libavcodec/dfa.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 and
CVE-2012-2785
<= 0.10.4
Multiple unspecified vulnerabilities in libavcodec/wmalosslessdec.c in FFmpeg before 0.11 have unknown impact and attack vectors,
CVE-2012-2784
<= 0.10.4
Unspecified vulnerability in the decode_pic function in libavcodec/cavsdec.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 a
CVE-2012-2783
<= 0.10.4
Unspecified vulnerability in libavcodec/vp56.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 and 0.8.x before 0.8.5, has unk
CVE-2012-2782
<= 0.10.4
Unspecified vulnerability in the decode_slice_header function in libavcodec/h264.c in FFmpeg before 0.11 has unknown impact and at
CVE-2012-2779
<= 0.10.4
Unspecified vulnerability in the decode_frame function in libavcodec/indeo5.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7
CVE-2012-2777
<= 0.10.4
Unspecified vulnerability in the decode_pic function in libavcodec/cavsdec.c in FFmpeg before 0.11, and Libav 0.7.x before 0.7.7 a
CVE-2012-2776
<= 0.10.4
Unspecified vulnerability in the decode_cell_data function in libavcodec/indeo3.c in FFmpeg before 0.11 and Libav 0.8.x before 0.8
CVE-2012-2775
<= 0.10.4
Unspecified vulnerability in the read_var_block_data function in libavcodec/alsdec.c in FFmpeg before 0.11, and Libav 0.7.x before
CVE-2012-2774
<= 0.10.4
The ff_MPV_frame_start function in libavcodec/mpegvideo.c in FFmpeg before 0.11 allows remote attackers to cause a denial of servi
CVE-2012-2772
<= 0.10.4
Unspecified vulnerability in the ff_rv34_decode_frame function in libavcodec/rv34.c in FFmpeg before 0.11, and Libav 0.7.x before
CVE-2012-0855
<= 0.9
Heap-based buffer overflow in the get_sot function in the J2K decoder (j2k.c) in libavcodec in FFmpeg before 0.9.1 allows remote a
CVE-2012-0849
<= 0.9
Integer overflow in the ff_j2k_dwt_init function in libavcodec/j2k_dwt.c in FFmpeg before 0.9.1 allows remote attackers to cause a
CVE-2011-4579
all versions
The svq1_decode_frame function in the SVQ1 decoder (svq1dec.c) in libavcodec in FFmpeg 0.5.x before 0.5.7, 0.6.x before 0.6.4, 0.7
CVE-2011-4364
all versions
Buffer overflow in the Sierra VMD decoder in libavcodec in FFmpeg 0.5.x before 0.5.7, 0.6.x before 0.6.4, 0.7.x before 0.7.9 and 0
CVE-2011-4353
all versions
The (1) av_image_fill_pointers, (2) vp5_parse_coeff, and (3) vp6_parse_coeff functions in FFmpeg 0.5.x before 0.5.7, 0.6.x before
CVE-2011-4352
all versions
Integer overflow in the vp3_dequant function in the VP3 decoder (vp3.c) in libavcodec in FFmpeg 0.5.x before 0.5.7, 0.6.x before 0
CVE-2011-3945
all versions
The decode_frame function in the KVG1 decoder (kgv1dec.c) in libavcodec in FFmpeg 0.7.x before 0.7.12 and 0.8.x before 0.8.11, and
CVE-2012-0857
<= 0.9
Multiple buffer overflows in the get_qcx function in the J2K decoder (j2kdec.c) in libavcode in FFmpeg before 0.9.1 allow remote a
CVE-2012-0856
<= 0.9
Heap-based buffer overflow in the MPV_frame_start function in libavcodec/mpegvideo.c in FFmpeg before 0.9.1, when the lowres optio
CVE-2012-0854
<= 0.9
The dpcm_decode_frame function in libavcodec/dpcm.c in FFmpeg before 0.9.1 does not use the proper pointer after an audio API chan
CVE-2012-0850
<= 0.9
The sbr_qmf_synthesis function in libavcodec/aacsbr.c in FFmpeg before 0.9.1 allows remote attackers to cause a denial of service
CVE-2012-0848
all versions
Heap-based buffer overflow in the ws_snd_decode_frame function in libavcodec/ws-snd1.c in FFmpeg 0.9.1 allows remote attackers to
CVE-2012-0847
<= 0.9
Heap-based buffer overflow in the avfilter_filter_samples function in libavfilter/avfilter.c in FFmpeg before 0.9.1 allows remote
CVE-2012-0859
<= 0.9
The render_line function in the vorbis codec (vorbis.c) in libavcodec in FFmpeg before 0.9.1 allows remote attackers to cause a de
CVE-2012-0858
all versions
The Shorten codec (shorten.c) in libavcodec in FFmpeg 0.7.x before 0.7.12 and 0.8.x before 0.8.11, and in Libav 0.5.x before 0.5.9
CVE-2012-0853
all versions
The decodeTonalComponents function in the Actrac3 codec (atrac3.c) in libavcodec in FFmpeg 0.7.x before 0.7.12, and 0.8.x before 0
CVE-2012-0852
<= 0.9
The adpcm_decode_frame function in adpcm.c in libavcodec in FFmpeg before 0.9.1 and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.
CVE-2012-0851
<= 0.9
The ff_h264_decode_seq_parameter_set function in h264_ps.c in libavcodec in FFmpeg before 0.9.1 and in Libav 0.5.x before 0.5.9, 0
CVE-2011-3952
<= 0.9.1
The decode_init function in kmvc.c in libavcodec in FFmpeg before 0.10 and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6, 0.7.x
CVE-2011-3951
<= 0.9.1
The dpcm_decode_frame function in dpcm.c in libavcodec in FFmpeg before 0.10 and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6,
CVE-2011-3947
all versions
Buffer overflow in mjpegbdec.c in libavcodec in FFmpeg 0.7.x before 0.7.12 and 0.8.x before 0.8.11, and in Libav 0.5.x before 0.5.
CVE-2011-3940
all versions
nsvdec.c in libavcodec in FFmpeg 0.7.x before 0.7.12 and 0.8.x before 0.8.11, and in Libav 0.5.x before 0.5.9, 0.6.x before 0.6.6,
CVE-2011-3936
all versions
The dv_extract_audio function in libavcodec in FFmpeg 0.7.x before 0.7.12 and 0.8.x before 0.8.11 and in Libav 0.5.x before 0.5.9,
CVE-2011-3929
all versions
The avpriv_dv_produce_packet function in libavcodec in FFmpeg 0.7.x before 0.7.12 and 0.8.x before 0.8.11 and in Libav 0.5.x befor
CVE-2011-4031
< 0.8.3
Integer underflow in the asfrtp_parse_packet function in libavformat/rtpdec_asf.c in FFmpeg before 0.8.3 allows remote attackers t
CVE-2011-3974
<= 0.7.3
Integer signedness error in the decode_residual_inter function in cavsdec.c in libavcodec in FFmpeg before 0.7.4 and 0.8.x before
CVE-2011-3973
<= 0.7.3
cavsdec.c in libavcodec in FFmpeg before 0.7.4 and 0.8.x before 0.8.3 allows remote attackers to cause a denial of service (incorr
CVE-2011-3362
<= 0.7.2
Integer signedness error in the decode_residual_block function in cavsdec.c in libavcodec in FFmpeg before 0.7.3 and 0.8.x before
CVE-2011-3504
<= 0.8.0
The Matroska format decoder in FFmpeg before 0.8.3 does not properly allocate memory, which allows remote attackers to execute arb
CVE-2011-1931
<= 0.6.2
sp5xdec.c in the Sunplus SP5X JPEG decoder in libavcodec in FFmpeg before 0.6.3 and libav through 0.6.2, as used in VideoLAN VLC m
CVE-2011-2162
all versions
Multiple unspecified vulnerabilities in FFmpeg 0.4.x through 0.6.x, as used in MPlayer 1.0 and other products, in Mandriva Linux 2
CVE-2011-2161
< 0.5.4
The ape_read_header function in ape.c in libavformat in FFmpeg before 0.5.4, as used in MPlayer, VideoLAN VLC media player, and ot
CVE-2011-2160
<= 0.5.3
The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read ope
CVE-2011-0723
all versions
FFmpeg 0.5.x, as used in MPlayer and other products, allows remote attackers to cause a denial of service (application crash) or p
CVE-2011-0722
<= 0.5.3
FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (heap memory corr
CVE-2010-3908
<= 0.5.3
FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (memory corruptio
CVE-2010-4705
all versions
Integer overflow in the vorbis_residue_decode_internal function in libavcodec/vorbis_dec.c in the Vorbis decoder in FFmpeg, possib
CVE-2010-4704
<= 0.6.1
libavcodec/vorbis_dec.c in the Vorbis decoder in FFmpeg 0.6.1 and earlier allows remote attackers to cause a denial of service (ap
CVE-2010-3429
<= 0.6
flicvideo.c in libavcodec 0.6 and earlier in FFmpeg, as used in MPlayer and other products, allows remote attackers to execute arb
CVE-2009-4640
all versions
Array index error in vorbis_dec.c in FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrar
CVE-2009-4639
all versions
The av_rescale_rnd function in the AVI demuxer in FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) via a cr
CVE-2009-4638
all versions
Integer overflow in FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code vi
CVE-2009-4637
all versions
FFmpeg 0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors th
CVE-2009-4636
all versions
FFmpeg 0.5 allows remote attackers to cause a denial of service (hang) via a crafted file that triggers an infinite loop.
CVE-2009-4635
all versions
FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted MOV container wi
CVE-2009-4634
all versions
Multiple integer underflows in FFmpeg 0.5 allow remote attackers to cause a denial of service and possibly execute arbitrary code
CVE-2009-4633
all versions
vorbis_dec.c in FFmpeg 0.5 uses an assignment operator when a comparison operator was intended, which might allow remote attackers
CVE-2009-4632
all versions
oggparsevorbis.c in FFmpeg 0.5 does not properly perform certain pointer arithmetic, which might allow remote attackers to obtain
CVE-2009-4631
all versions
Off-by-one error in the VP3 decoder (vp3.c) in FFmpeg 0.5 allows remote attackers to cause a denial of service and possibly execut
CVE-2009-0385
< 0.6.3
Integer signedness error in the fourxm_read_header function in libavformat/4xm.c in FFmpeg before revision 16846 allows remote att
CVE-2008-4869
<= 0.4.9
FFmpeg 0.4.9, as used by MPlayer, allows context-dependent attackers to cause a denial of service (memory consumption) via unknown
CVE-2008-4868
<= 0.4.9
Unspecified vulnerability in the avcodec_close function in libavcodec/utils.c in FFmpeg 0.4.9 before r14787, as used by MPlayer, h
CVE-2008-4867
<= 0.4.9
Buffer overflow in libavcodec/dca.c in FFmpeg 0.4.9 before r14917, as used by MPlayer, allows context-dependent attackers to have
CVE-2008-4866
<= 0.4.9
Multiple buffer overflows in libavformat/utils.c in FFmpeg 0.4.9 before r14715, as used by MPlayer, allow context-dependent attack
CVE-2008-3230
all versions
The ffmpeg lavf demuxer allows user-assisted attackers to cause a denial of service (application crash) via a crafted GIF file, po
CVE-2008-3162
all versions
Stack-based buffer overflow in the str_read_packet function in libavformat/psxstr.c in FFmpeg before r13993 allows remote attacker
CVE-2006-4800
all versions
Multiple buffer overflows in libavcodec in ffmpeg before 0.4.9_p20060530 allow remote attackers to cause a denial of service or po
CVE-2005-4048
all versions
Heap-based buffer overflow in the avcodec_default_get_buffer function (utils.c) in FFmpeg libavcodec 0.4.9-pre1 and earlier, as us
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh · Open-source threat intelligence platform · 100+ authoritative sources · Every fact traces to its origin