Vulnerabilities > Ffmpeg

DATE CVE VULNERABILITY TITLE RISK
2021-05-26 CVE-2020-22015 Classic Buffer Overflow vulnerability in multiple products
Buffer Overflow vulnerability in FFmpeg 4.2 in mov_write_video_tag due to the out of bounds in libavformat/movenc.c, which could let a remote malicious user obtain sensitive information, cause a Denial of Service, or execute arbitrary code.
6.8
2021-05-26 CVE-2020-24020 Classic Buffer Overflow vulnerability in Ffmpeg 4.2.3
Buffer Overflow vulnerability in FFMpeg 4.2.3 in dnn_execute_layer_pad in libavfilter/dnn/dnn_backend_native_layer_pad.c due to a call to memcpy without length checks, which could let a remote malicious user execute arbitrary code.
network
low complexity
ffmpeg CWE-120
8.8
2021-05-25 CVE-2020-20453 Divide By Zero vulnerability in multiple products
FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aaccoder, which allows a remote malicious user to cause a Denial of Service
network
low complexity
ffmpeg debian CWE-369
4.0
2021-05-25 CVE-2020-20450 NULL Pointer Dereference vulnerability in multiple products
FFmpeg 4.2 is affected by null pointer dereference passed as argument to libavformat/aviobuf.c, which could cause a Denial of Service.
network
low complexity
ffmpeg debian CWE-476
5.0
2021-05-25 CVE-2020-20451 Memory Leak vulnerability in multiple products
Denial of Service issue in FFmpeg 4.2 due to resource management errors via fftools/cmdutils.c.
network
low complexity
ffmpeg debian CWE-401
5.0
2021-05-25 CVE-2020-20445 Divide By Zero vulnerability in multiple products
FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/lpc.h, which allows a remote malicious user to cause a Denial of Service.
network
low complexity
ffmpeg debian CWE-369
4.0
2021-05-25 CVE-2020-20446 Divide By Zero vulnerability in multiple products
FFmpeg 4.2 is affected by a Divide By Zero issue via libavcodec/aacpsy.c, which allows a remote malicious user to cause a Denial of Service.
network
low complexity
ffmpeg debian CWE-369
4.0
2021-05-25 CVE-2020-20448 Divide By Zero vulnerability in Ffmpeg 4.1.3
FFmpeg 4.1.3 is affected by a Divide By Zero issue via libavcodec/ratecontrol.c, which allows a remote malicious user to cause a Denial of Service.
network
low complexity
ffmpeg CWE-369
4.0
2021-05-24 CVE-2020-21041 Classic Buffer Overflow vulnerability in multiple products
Buffer Overflow vulnerability exists in FFmpeg 4.1 via apng_do_inverse_blend in libavcodec/pngenc.c, which could let a remote malicious user cause a Denial of Service
network
low complexity
ffmpeg debian CWE-120
5.0
2021-04-07 CVE-2021-30123 Classic Buffer Overflow vulnerability in Ffmpeg 4.4
FFmpeg <=4.3 contains a buffer overflow vulnerability in libavcodec through a crafted file that may lead to remote code execution.
network
low complexity
ffmpeg CWE-120
8.8