
CVE-2013-7016 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7016
09 Dec 2013 — The get_siz function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not ensure the expected sample separation, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted JPEG2000 data. La función get_siz en libavcodec/jpeg2000dec.c en FFmpeg anterior a v2.1 no asegura la separación de ejemplo esperada, lo que permite a atacantes remotos provocar una denegación de servicio (acceso a array fuera de rango) o posiblemente ... • http://ffmpeg.org/security.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2013-7017 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7017
09 Dec 2013 — libavcodec/jpeg2000.c in FFmpeg before 2.1 allows remote attackers to cause a denial of service (invalid pointer dereference) or possibly have unspecified other impact via crafted JPEG2000 data. libavcodec/jpeg2000.c en FFmpeg anterior a la versión 2.1 permite a atacantes remotos provocar una denegación de servicio (referencia a puntero inválido) o posiblemente tener otro impacto sin especificar a través de datos JPEG2000 manipulados. Multiple vulnerabilities have been found in FFmpeg, the worst of which co... • http://ffmpeg.org/security.html •

CVE-2013-7018 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7018
09 Dec 2013 — libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not ensure the use of valid code-block dimension values, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted JPEG2000 data. libavcodec/jpeg2000dec.c en FFmpeg anterior a 2.1 no garantiza el uso de valores válidos en las dimensiones de código de bloques , lo que permite a atacantes remotos provocar una denegación de servicio (acceso fuera d elos rangos de la matriz) o p... • http://ffmpeg.org/security.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2013-7019 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7019
09 Dec 2013 — The get_cox function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not properly validate the reduction factor, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted JPEG2000 data. La función get_cox function en libavcodec/jpeg2000dec.c en FFmpeg anterior a v2.1 no valida correctamente el factor de reducción, lo que permite a atacantes remotos provocar una denegación de servicio (acceso a array fuera de rango) y p... • http://ffmpeg.org/security.html • CWE-20: Improper Input Validation •

CVE-2013-7020 – Mandriva Linux Security Advisory 2014-227
https://notcve.org/view.php?id=CVE-2013-7020
09 Dec 2013 — The read_header function in libavcodec/ffv1dec.c in FFmpeg before 2.1 does not properly enforce certain bit-count and colorspace constraints, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted FFV1 data. La función read_header function en libavcodec/ffv1dec.c en FFmpeg anterior a v2.1 no aplica correctamente ciertas restricciones en el número de bits y en el espacio de colores, lo que permite a atacantes remotos provo... • http://ffmpeg.org/security.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2013-7021 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7021
09 Dec 2013 — The filter_frame function in libavfilter/vf_fps.c in FFmpeg before 2.1 does not properly ensure the availability of FIFO content, which allows remote attackers to cause a denial of service (double free) or possibly have unspecified other impact via crafted data. La funcióm filter_frame en libavfilter/vf_fps.c en FFmepg anteriores a 2.1 no asegura apropiadamente la disponibilidad de contenido FIFO, lo que permite a atacantes remotos causar una denegación de servicio (doble liberación) o posiblemente tener ot... • http://ffmpeg.org/security.html • CWE-399: Resource Management Errors •

CVE-2013-7022 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7022
09 Dec 2013 — The g2m_init_buffers function in libavcodec/g2meet.c in FFmpeg before 2.1 does not properly allocate memory for tiles, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Go2Webinar data. La función g2m_init_buffers en libavcodec/g2meet.c en FFmpeg anterior a v2.1 no maneja correctamente la memoria para mosaicos, lo que permite a atacantes remotos provocar una denegación de servicio (acceso a array fuera de rango) o po... • http://ffmpeg.org/security.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2013-7023 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7023
09 Dec 2013 — The ff_combine_frame function in libavcodec/parser.c in FFmpeg before 2.1 does not properly handle certain memory-allocation errors, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted data. La función ff_combine_frame en libavcodec/parser.c en FFmpeg anterior a v2.1 no maneja correctamente ciertos errores de asignación de memoria, lo que permite a atacantes remotods provocar una denegación de servicio (acceso a array ... • http://ffmpeg.org/security.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2013-7024 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-7024
09 Dec 2013 — The jpeg2000_decode_tile function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not consider the component number in certain calculations, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted JPEG2000 data. La función jpeg2000_decode_tile en libavcodec/jpeg2000dec.c en FFmpeg anterior a v2.1 no tiene en cuenta el número de componente en ciertos cálculos, lo que permite a atacantes remotos provocar una denegación... • http://ffmpeg.org/security.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2013-0860 – Debian Security Advisory 3003-1
https://notcve.org/view.php?id=CVE-2013-0860
23 Nov 2013 — The ff_er_frame_end function in libavcodec/error_resilience.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.1 does not properly verify that a frame is fully initialized, which allows remote attackers to trigger a NULL pointer dereference via crafted picture data. La función ff_er_frame_end de ibavcodec/error_resilience.c en FFmpeg anterior a la versión 1.0.4 y 1.1.x anterior a 1.1.1 no verifica adecuadamente que un frame está completamente inicializado, lo que permite a atacantes remotos provocar una referenc... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=3e196e4def03c7a91423803402f84d638d316c33 • CWE-20: Improper Input Validation •