Vulnerabilities > Ffmpeg
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-09-20 | CVE-2021-38094 | Integer Overflow or Wraparound vulnerability in Ffmpeg 4.2.1 Integer Overflow vulnerability in function filter_sobel in libavfilter/vf_convolution.c in Ffmpeg 4.2.1, allows attackers to cause a Denial of Service or other unspecified impacts. | 8.8 |
2021-08-21 | CVE-2021-38171 | Unchecked Return Value vulnerability in multiple products adts_decode_extradata in libavformat/adtsenc.c in FFmpeg 4.4 does not check the init_get_bits return value, which is a necessary step because the second argument to init_get_bits can be crafted. | 9.8 |
2021-08-12 | CVE-2021-38291 | Reachable Assertion vulnerability in multiple products FFmpeg version (git commit de8e6e67e7523e48bb27ac224a0b446df05e1640) suffers from a an assertion failure at src/libavutil/mathematics.c. | 7.5 |
2021-08-10 | CVE-2020-21688 | Use After Free vulnerability in multiple products A heap-use-after-free in the av_freep function in libavutil/mem.c of FFmpeg 4.2 allows attackers to execute arbitrary code. | 8.8 |
2021-08-10 | CVE-2020-21697 | Use After Free vulnerability in multiple products A heap-use-after-free in the mpeg_mux_write_packet function in libavformat/mpegenc.c of FFmpeg 4.2 allows to cause a denial of service (DOS) via a crafted avi file. | 6.5 |
2021-08-05 | CVE-2021-3566 | Prior to ffmpeg version 4.3, the tty demuxer did not have a 'read_probe' function assigned to it. | 5.5 |
2021-08-04 | CVE-2021-38114 | Unchecked Return Value vulnerability in multiple products libavcodec/dnxhddec.c in FFmpeg 4.4 does not check the return value of the init_vlc function, a similar issue to CVE-2013-0868. | 5.5 |
2021-06-03 | CVE-2021-33815 | Improper Validation of Array Index vulnerability in Ffmpeg 4.4 dwa_uncompress in libavcodec/exr.c in FFmpeg 4.4 allows an out-of-bounds array access because dc_count is not strictly checked. | 8.8 |
2021-06-02 | CVE-2020-22054 | Memory Leak vulnerability in multiple products A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the av_dict_set function in dict.c. | 6.5 |
2021-06-02 | CVE-2020-22056 | Memory Leak vulnerability in Ffmpeg 4.2 A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the config_input function in af_acrossover.c. | 6.5 |