
CVE-2013-7017 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7017
09 Dec 2013 — libavcodec/jpeg2000.c in FFmpeg before 2.1 allows remote attackers to cause a denial of service (invalid pointer dereference) or possibly have unspecified other impact via crafted JPEG2000 data. libavcodec/jpeg2000.c en FFmpeg anterior a la versión 2.1 permite a atacantes remotos provocar una denegación de servicio (referencia a puntero inválido) o posiblemente tener otro impacto sin especificar a través de datos JPEG2000 manipulados. Multiple vulnerabilities have been found in FFmpeg, ... • http://ffmpeg.org/security.html •

CVE-2013-7018 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7018
09 Dec 2013 — libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not ensure the use of valid code-block dimension values, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted JPEG2000 data. libavcodec/jpeg2000dec.c en FFmpeg anterior a 2.1 no garantiza el uso de valores válidos en las dimensiones de código de bloques , lo que permite a atacantes remotos provocar una denegación de servicio (acceso fuera d elos rangos de ... • http://ffmpeg.org/security.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2013-7019 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7019
09 Dec 2013 — The get_cox function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not properly validate the reduction factor, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted JPEG2000 data. La función get_cox function en libavcodec/jpeg2000dec.c en FFmpeg anterior a v2.1 no valida correctamente el factor de reducción, lo que permite a atacantes remotos provocar una denegación de servicio (acceso a array fuera... • http://ffmpeg.org/security.html • CWE-20: Improper Input Validation •

CVE-2013-7021 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7021
09 Dec 2013 — The filter_frame function in libavfilter/vf_fps.c in FFmpeg before 2.1 does not properly ensure the availability of FIFO content, which allows remote attackers to cause a denial of service (double free) or possibly have unspecified other impact via crafted data. ... Multiple vulnerabilities have been found in FFmpeg, the worst of which could lead to arbitrary code execution or Denial of Service condition. • http://ffmpeg.org/security.html • CWE-399: Resource Management Errors •

CVE-2013-7022 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7022
09 Dec 2013 — The g2m_init_buffers function in libavcodec/g2meet.c in FFmpeg before 2.1 does not properly allocate memory for tiles, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Go2Webinar data. La función g2m_init_buffers en libavcodec/g2meet.c en FFmpeg anterior a v2.1 no maneja correctamente la memoria para mosaicos, lo que permite a atacantes remotos provocar una denegación de servicio (acceso a array fuera ... • http://ffmpeg.org/security.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2013-7023 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7023
09 Dec 2013 — The ff_combine_frame function in libavcodec/parser.c in FFmpeg before 2.1 does not properly handle certain memory-allocation errors, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted data. La función ff_combine_frame en libavcodec/parser.c en FFmpeg anterior a v2.1 no maneja correctamente ciertos errores de asignación de memoria, lo que permite a atacantes remotods provocar una denegación de servicio (a... • http://ffmpeg.org/security.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2013-7024 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7024
09 Dec 2013 — The jpeg2000_decode_tile function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not consider the component number in certain calculations, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted JPEG2000 data. La función jpeg2000_decode_tile en libavcodec/jpeg2000dec.c en FFmpeg anterior a v2.1 no tiene en cuenta el número de componente en ciertos cálculos, lo que permite a atacantes remotos provocar ... • http://ffmpeg.org/security.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2013-4264 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-4264
23 Nov 2013 — The kempf_decode_tile function in libavcodec/g2meet.c in FFmpeg before 2.0.1 allows remote attackers to cause a denial of service (out-of-bounds heap write) via a G2M4 encoded file. La función kempf_decode_tile en libavcodec/g2meet.c de FFmpeg anterior a la versión 2.0.1 permite a atacantes remotos provocar una denegación de servicio (escritura de memoria dinámica fuera de límites) a través de un archivo G2M4 codificado. Multiple vulnerabilities have been found in FFmpeg, the worst of w... • https://github.com/FFmpeg/FFmpeg/commit/2960576378d17d71cc8dccc926352ce568b5eec1 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2013-4265 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-4265
23 Nov 2013 — The av_reallocp_array function in libavutil/mem.c in FFmpeg before 2.0.1 has an unspecified impact and remote vectors related to a "wrong return code" and a resultant NULL pointer dereference. La función av_reallocp_array en libavutil/mem.c de FFmpeg anterior a la versión 2.0.1 tiene un impacto sin especificar y vectores remotos relacionados con un "código de retorno incorrecto", resultante en una referencia a puntero nulo. Multiple vulnerabilities have been found in FFmpeg, the worst o... • https://github.com/FFmpeg/FFmpeg/commit/c94f9e854228e0ea00e1de8769d8d3f7cab84a55 •

CVE-2010-2062 – Gentoo Linux Security Advisory 201411-01
https://notcve.org/view.php?id=CVE-2010-2062
25 Oct 2013 — Desbordamiento de enteros en la función real_get_rdt_chunk en real.c, utilizado en modules/access/rtsp/real.c del reproductor multimedia VideoLAN VLC anterior a 1.0.1 y en stream/realrtsp/real.c en MPlayer anterior a r29447, permite a atacantes remotos ejecutar código arbitrario a través del valor longitud modificado en la cabecera RDT Multiple vulnerabilities have been found in MPlayer and the bundled FFmpeg, the worst of which may lead to the execution of arbitrary code. • http://git.videolan.org/?p=vlc.git%3Ba=commit%3Bh=dc74600c97eb834c08674676e209afa842053aca • CWE-189: Numeric Errors •