Vulnerabilities > Ffmpeg > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-09-20 CVE-2021-38092 Integer Overflow or Wraparound vulnerability in Ffmpeg 4.2.1
Integer Overflow vulnerability in function filter_prewitt in libavfilter/vf_convolution.c in Ffmpeg 4.2.1, allows attackers to cause a Denial of Service or other unspecified impacts.
network
ffmpeg CWE-190
6.8
2021-09-20 CVE-2021-38093 Integer Overflow or Wraparound vulnerability in Ffmpeg 4.2.1
Integer Overflow vulnerability in function filter_robert in libavfilter/vf_convolution.c in Ffmpeg 4.2.1, allows attackers to cause a Denial of Service or other unspecified impacts.
network
ffmpeg CWE-190
6.8
2021-09-20 CVE-2021-38094 Integer Overflow or Wraparound vulnerability in Ffmpeg 4.2.1
Integer Overflow vulnerability in function filter_sobel in libavfilter/vf_convolution.c in Ffmpeg 4.2.1, allows attackers to cause a Denial of Service or other unspecified impacts.
network
ffmpeg CWE-190
6.8
2021-08-10 CVE-2020-21688 Use After Free vulnerability in multiple products
A heap-use-after-free in the av_freep function in libavutil/mem.c of FFmpeg 4.2 allows attackers to execute arbitrary code.
6.8
2021-08-10 CVE-2020-21697 Use After Free vulnerability in multiple products
A heap-use-after-free in the mpeg_mux_write_packet function in libavformat/mpegenc.c of FFmpeg 4.2 allows to cause a denial of service (DOS) via a crafted avi file.
4.3
2021-08-05 CVE-2021-3566 Prior to ffmpeg version 4.3, the tty demuxer did not have a 'read_probe' function assigned to it.
local
low complexity
ffmpeg debian
5.5
2021-08-04 CVE-2021-38114 Unchecked Return Value vulnerability in multiple products
libavcodec/dnxhddec.c in FFmpeg 4.4 does not check the return value of the init_vlc function, a similar issue to CVE-2013-0868.
local
low complexity
ffmpeg debian CWE-252
5.5
2021-06-02 CVE-2020-22054 Memory Leak vulnerability in multiple products
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the av_dict_set function in dict.c.
network
low complexity
ffmpeg debian CWE-401
6.5
2021-06-02 CVE-2020-22056 Memory Leak vulnerability in Ffmpeg 4.2
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the config_input function in af_acrossover.c.
network
ffmpeg CWE-401
4.3
2021-06-02 CVE-2020-22051 Memory Leak vulnerability in Ffmpeg 4.2
A Denial of Service vulnerability exists in FFmpeg 4.2 due to a memory leak in the filter_frame function in vf_tile.c.
network
low complexity
ffmpeg CWE-401
6.5