
CVE-2014-9604 – Debian Security Advisory 3189-1
https://notcve.org/view.php?id=CVE-2014-9604
16 Jan 2015 — libavcodec/utvideodec.c in FFmpeg before 2.5.2 does not check for a zero value of a slice height, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Ut Video data, related to the (1) restore_median and (2) restore_median_il functions. libavcodec/utvideodec.c en FFmpeg anterior a 2.5.2 no comprueba para un valor de cero en la altura de un trozo, lo que permite a atacantes remotos causar una denegación de servicio (acce... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=3881606240953b9275a247a1c98a567f3c44890f • CWE-189: Numeric Errors •

CVE-2014-9316 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2014-9316
09 Dec 2014 — The mjpeg_decode_app function in libavcodec/mjpegdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds heap access) and possibly have other unspecified impact via vectors related to LJIF tags in an MJPEG file. La función mjpeg_decode_app en libavcodec/mjpegdec.c en FFMpeg anterior a 2.1.6, 2.2.x hasta 2.3.x, y 2.4.x anterior a 2.4.4 permite a atacantes remotos causar una denegación de servicio (acceso a memoria dinámica ... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=0eecf40935b22644e6cd74c586057237ecfd6844 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-9317 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2014-9317
09 Dec 2014 — The decode_ihdr_chunk function in libavcodec/pngdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds heap access) and possibly have other unspecified impact via an IDAT before an IHDR in a PNG file. La función decode_ihdr_chunk en libavcodec/pngdec.c en FFMpeg anterior a 2.1.6, 2.2.x hasta 2.3.x, y 2.4.x anterior a 2.4.4 permite a atacantes remotos causar una denegación de servicio (acceso a memoria dinámica fuera de ra... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=79ceaf827be0b070675d4cd0a55c3386542defd8 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-9318 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2014-9318
09 Dec 2014 — The raw_decode function in libavcodec/rawdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds heap access) and possibly have other unspecified impact via a crafted .cine file that triggers the avpicture_get_size function to return a negative frame size. La función raw_decode en libavcodec/rawdec.c en FFMpeg anterior a 2.1.6, 2.2.x hasta 2.3.x, y 2.4.x anterior a 2.4.4 permite a atacantes remotos causar una denegación de... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=1d3a3b9f8907625b361420d48fe05716859620ff • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-9319 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2014-9319
09 Dec 2014 — The ff_hevc_decode_nal_sps function in libavcodec/hevc_ps.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted .bit file. La función ff_hevc_decode_nal_sps en libavcodec/hevc_ps.c en FFMpeg anterior a 2.1.6, 2.2.x hasta 2.3.x, y 2.4.x anterior a 2.4.4 permite a atacantes remotos causar una denegación de servicio (acceso fuera de rango) a través de un fichero .bit manipulado. Multiple vulnerabilities ha... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=ea38e5a6b75706477898eb1e6582d667dbb9946c • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-8541 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2014-8541
05 Nov 2014 — libavcodec/mjpegdec.c in FFmpeg before 2.4.2 considers only dimension differences, and not bits-per-pixel differences, when determining whether an image size has changed, which allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via crafted MJPEG data. libavcodec/mjpegdec.c en FFmpeg anterior a 2.4.2 considera solamente las diferencias de dimensión, y no las diferencias bits-por-pixel, cuando determina si un tamaño de imagen ha cambiado, lo q... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=5c378d6a6df8243f06c87962b873bd563e58cd39 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-8542 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2014-8542
05 Nov 2014 — libavcodec/utils.c in FFmpeg before 2.4.2 omits a certain codec ID during enforcement of alignment, which allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via crafted JV data. libavcodec/utils.c en FFmpeg anterior a 2.4.2 omite cierto identificador de codec durante el forzamiento de la alineación, lo que permite a atacantes remotos causar una denegación de servicio (acceso fuera de rango) o posiblemente tener otro impacto no especificado a... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=105654e376a736d243aef4a1d121abebce912e6b • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-8543 – Debian Security Advisory 3189-1
https://notcve.org/view.php?id=CVE-2014-8543
05 Nov 2014 — libavcodec/mmvideo.c in FFmpeg before 2.4.2 does not consider all lines of HHV Intra blocks during validation of image height, which allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via crafted MM video data. libavcodec/mmvideo.c en FFmpeg anterior a 2.4.2 no considera todas las líneas de los bloques HHV Intra durante la validación de la altura del imagen, lo que permite a atacantes remotos causar una denegación de servicio (acceso fuera d... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=8b0e96e1f21b761ca15dbb470cd619a1ebf86c3e • CWE-20: Improper Input Validation •

CVE-2014-8544 – Debian Security Advisory 3189-1
https://notcve.org/view.php?id=CVE-2014-8544
05 Nov 2014 — libavcodec/tiff.c in FFmpeg before 2.4.2 does not properly validate bits-per-pixel fields, which allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via crafted TIFF data. libavcodec/tiff.c en FFmpeg anterior a 2.4.2 no valida debidamente los campos bits-per-pixel, lo que permite a atacantes remotos causar una denegación de servicio (acceso fuera de rango) o posiblemente tener otro impacto no especificado a través de datos TIFF manipulados. I... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=e1c0cfaa419aa5d320540d5a1b3f8fd9b82ab7e5 • CWE-20: Improper Input Validation •

CVE-2014-8545 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2014-8545
05 Nov 2014 — libavcodec/pngdec.c in FFmpeg before 2.4.2 accepts the monochrome-black format without verifying that the bits-per-pixel value is 1, which allows remote attackers to cause a denial of service (out-of-bounds access) or possibly have unspecified other impact via crafted PNG data. libavcodec/pngdec.c en FFmpeg anterior a 2.4.2 acepta el formato de negro monocromo sin verificar que el valor bits-per-pixel sea 1, lo que permite a atacantes remotos causar una denegación de servicio (acceso fuera de rango) o posib... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=3e2b745020c2dbf0201fe7df3dad9e7e0b2e1bb6 • CWE-189: Numeric Errors •