Vulnerabilities > Ffmpeg > Ffmpeg > 0.5.7

DATE CVE VULNERABILITY TITLE RISK
2018-07-23 CVE-2018-1999011 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Ffmpeg
FFmpeg before commit 2b46ebdbff1d8dec7a3d8ea280a612b91a582869 contains a Buffer Overflow vulnerability in asf_o format demuxer that can result in heap-buffer-overflow that may result in remote code execution.
network
ffmpeg CWE-119
6.8
2018-07-23 CVE-2018-1999010 Out-of-bounds Read vulnerability in multiple products
FFmpeg before commit cced03dd667a5df6df8fd40d8de0bff477ee02e8 contains multiple out of array access vulnerabilities in the mms protocol that can result in attackers accessing out of bound data.
network
low complexity
ffmpeg debian CWE-125
7.5
2018-07-19 CVE-2018-14394 Divide By Zero vulnerability in Ffmpeg
libavformat/movenc.c in FFmpeg before 4.0.2 allows attackers to cause a denial of service (application crash caused by a divide-by-zero error) with a user crafted Waveform audio file.
network
ffmpeg CWE-369
4.3
2018-04-24 CVE-2018-7751 Infinite Loop vulnerability in Ffmpeg
The svg_probe function in libavformat/img2dec.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (Infinite Loop) via a crafted XML file.
network
ffmpeg CWE-835
4.3
2018-04-11 CVE-2018-10001 Out-of-bounds Read vulnerability in multiple products
The decode_init function in libavcodec/utvideodec.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (out of array read) via an AVI file.
network
low complexity
ffmpeg debian CWE-125
6.5
2018-04-07 CVE-2018-9841 Out-of-bounds Read vulnerability in Ffmpeg
The export function in libavfilter/vf_signature.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (out-of-array access) or possibly have unspecified other impact via a long filename.
network
low complexity
ffmpeg CWE-125
8.8
2018-02-12 CVE-2018-6912 Out-of-bounds Read vulnerability in Ffmpeg
The decode_plane function in libavcodec/utvideodec.c in FFmpeg through 3.4.2 allows remote attackers to cause a denial of service (out of array read) via a crafted AVI file.
network
ffmpeg CWE-125
4.3
2018-02-08 CVE-2012-5360 Improper Input Validation vulnerability in Ffmpeg
Libavcodec in FFmpeg before 0.11 allows remote attackers to execute arbitrary code via a crafted QT file.
network
ffmpeg CWE-20
critical
9.3
2018-02-08 CVE-2012-5359 Improper Input Validation vulnerability in Ffmpeg
Libavcodec in FFmpeg before 0.11 allows remote attackers to execute arbitrary code via a crafted ASF file.
network
ffmpeg CWE-20
critical
9.3
2018-02-05 CVE-2018-6621 Out-of-bounds Read vulnerability in multiple products
The decode_frame function in libavcodec/utvideodec.c in FFmpeg through 3.2 allows remote attackers to cause a denial of service (out of array read) via a crafted AVI file.
4.3