
CVE-2014-9604 – Debian Security Advisory 3189-1
https://notcve.org/view.php?id=CVE-2014-9604
16 Jan 2015 — libavcodec/utvideodec.c in FFmpeg before 2.5.2 does not check for a zero value of a slice height, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Ut Video data, related to the (1) restore_median and (2) restore_median_il functions. libavcodec/utvideodec.c en FFmpeg anterior a 2.5.2 no comprueba para un valor de cero en la altura de un trozo, lo que permite a atacantes remotos causar una denegación de servicio (acce... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=3881606240953b9275a247a1c98a567f3c44890f • CWE-189: Numeric Errors •

CVE-2014-9316 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2014-9316
09 Dec 2014 — The mjpeg_decode_app function in libavcodec/mjpegdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds heap access) and possibly have other unspecified impact via vectors related to LJIF tags in an MJPEG file. La función mjpeg_decode_app en libavcodec/mjpegdec.c en FFMpeg anterior a 2.1.6, 2.2.x hasta 2.3.x, y 2.4.x anterior a 2.4.4 permite a atacantes remotos causar una denegación de servicio (acceso a memoria dinámica ... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=0eecf40935b22644e6cd74c586057237ecfd6844 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-9317 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2014-9317
09 Dec 2014 — The decode_ihdr_chunk function in libavcodec/pngdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds heap access) and possibly have other unspecified impact via an IDAT before an IHDR in a PNG file. La función decode_ihdr_chunk en libavcodec/pngdec.c en FFMpeg anterior a 2.1.6, 2.2.x hasta 2.3.x, y 2.4.x anterior a 2.4.4 permite a atacantes remotos causar una denegación de servicio (acceso a memoria dinámica fuera de ra... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=79ceaf827be0b070675d4cd0a55c3386542defd8 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-9318 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2014-9318
09 Dec 2014 — The raw_decode function in libavcodec/rawdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds heap access) and possibly have other unspecified impact via a crafted .cine file that triggers the avpicture_get_size function to return a negative frame size. La función raw_decode en libavcodec/rawdec.c en FFMpeg anterior a 2.1.6, 2.2.x hasta 2.3.x, y 2.4.x anterior a 2.4.4 permite a atacantes remotos causar una denegación de... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=1d3a3b9f8907625b361420d48fe05716859620ff • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2014-9319 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2014-9319
09 Dec 2014 — The ff_hevc_decode_nal_sps function in libavcodec/hevc_ps.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allows remote attackers to cause a denial of service (out-of-bounds access) via a crafted .bit file. La función ff_hevc_decode_nal_sps en libavcodec/hevc_ps.c en FFMpeg anterior a 2.1.6, 2.2.x hasta 2.3.x, y 2.4.x anterior a 2.4.4 permite a atacantes remotos causar una denegación de servicio (acceso fuera de rango) a través de un fichero .bit manipulado. Multiple vulnerabilities ha... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=ea38e5a6b75706477898eb1e6582d667dbb9946c • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2005-4048
https://notcve.org/view.php?id=CVE-2005-4048
07 Dec 2005 — Heap-based buffer overflow in the avcodec_default_get_buffer function (utils.c) in FFmpeg libavcodec 0.4.9-pre1 and earlier, as used in products such as (1) mplayer, (2) xine-lib, (3) Xmovie, and (4) GStreamer, allows remote attackers to execute arbitrary commands via small PNG images with palettes. • http://article.gmane.org/gmane.comp.video.ffmpeg.devel/26558 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •