![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-0867 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-0867
23 Nov 2013 — The decode_slice_header function in libavcodec/h264.c in FFmpeg before 1.1.2 does not properly check when the pixel format changes, which allows remote attackers to have unspecified impact via crafted H.264 video data, related to an out-of-bounds array access. La función decode_slice_header en libavcodec/h264.c de FFmpeg anterior a la versión 1.1.2 no comprueba adecuadamente cuando cambia el formato de pixel, lo que permite a atacantes remotos provocar un impacto sin especificar a través de datos de vídeo H... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commitdiff%3Bh=3ef1538121fa6daeb1767510f1d4ae2c306c9fec • CWE-20: Improper Input Validation •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-0862 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-0862
23 Nov 2013 — Multiple integer overflows in the process_frame_obj function in libavcodec/sanm.c in FFmpeg before 1.1.2 allow remote attackers to have an unspecified impact via crafted image dimensions in LucasArts Smush video data, which triggers an out-of-bounds array access. Desbordamiento de enteros múltiple en la función process_frame_obj de libavcodec/sanm.c en FFmpeg anterior a la versión 1.1.2 permite a atacantes remotos tener un impacto sin especificar a través de dimensiones de imagen manipuladas en datos de víd... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commit%3Bh=f4fb841ad13bab66d4fb0c7ff2a94770df7815d8 • CWE-189: Numeric Errors •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-0865 – Debian Security Advisory 2855-1
https://notcve.org/view.php?id=CVE-2013-0865
23 Nov 2013 — The vqa_decode_chunk function in libavcodec/vqavideo.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.2 allows remote attackers to have an unspecified impact via a large (1) cbp0 or (2) cbpz chunk in Westwood Studios VQA Video file, which triggers an out-of-bounds write. La función vqa_decode_chunk en libavcodec/vqavideo.c de FFmpeg anterior a la versión 1.0.4 y 1.1.x anterior a 1.1.2 permite a atacantes remotos provocar un impacto no deseado a través de un chunk (1) cbp0 o (2) cbpz grande en Westwood Studios ... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commitdiff%3Bh=08e2c7a45f82b897a285548c257972eb1ad352c5 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-0868 – Debian Security Advisory 3003-1
https://notcve.org/view.php?id=CVE-2013-0868
23 Nov 2013 — libavcodec/huffyuvdec.c in FFmpeg before 1.1.2 allows remote attackers to have an unspecified impact via crafted Huffyuv data, related to an out-of-bounds write and (1) unchecked return codes from the init_vlc function and (2) "len==0 cases." libavcodec/huffyuvdec.c en FFmpeg anterior a la versión 1.1.2 permite a atacantes remotos generar un impacto sin especificar a través de datos Huffyuv manipulados, relacionados con una escritura fuera de límites y (1) códigos de retorno sin comprobar desde la función i... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commitdiff%3Bh=6baa54924980e1f0e8121e4715d16ed1adcd2a23 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-0864 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-0864
23 Nov 2013 — The gif_copy_img_rect function in libavcodec/gifdec.c in FFmpeg before 1.1.2 performs an incorrect calculation for an "end pointer," which allows remote attackers to have an unspecified impact via crafted GIF data that triggers an out-of-bounds array access. La función gif_copy_img_rect en libavcodec/gifdec.c de FFmpeg anterior a la versión 1.1.2 realiza un cálculo incorrecto para un "puntero final", lo que permite a atacantes remotos provocar un impacto sin especificar a través de datos GIF manipulados que... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commitdiff%3Bh=9547034f9120187e23ad76424dd4d70247e62212 • CWE-189: Numeric Errors •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-0869
https://notcve.org/view.php?id=CVE-2013-0869
23 Nov 2013 — The field_end function in libavcodec/h264.c in FFmpeg before 1.1.2 allows remote attackers to have an unspecified impact via crafted H.264 data, related to an SPS and slice mismatch and an out-of-bounds array access. La función field_end en libavcodec/h264.c en FFmpeg anterior a 1.1.2 permite a atacantes remotos tener un impacto no especificado a través de datos H.264 modificados, relacionados con SPS y un fragmento perdido y un acceso a una matriz fuera de límites. • http://git.videolan.org/?p=ffmpeg.git%3Ba=commitdiff%3Bh=eaa9d2cd6b8c1e2722d5bfc56ea67fde865200ce • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-4264 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-4264
23 Nov 2013 — The kempf_decode_tile function in libavcodec/g2meet.c in FFmpeg before 2.0.1 allows remote attackers to cause a denial of service (out-of-bounds heap write) via a G2M4 encoded file. La función kempf_decode_tile en libavcodec/g2meet.c de FFmpeg anterior a la versión 2.0.1 permite a atacantes remotos provocar una denegación de servicio (escritura de memoria dinámica fuera de límites) a través de un archivo G2M4 codificado. Multiple vulnerabilities have been found in FFmpeg, the worst of which could lead to ar... • http://www.ffmpeg.org/security.html • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-0878 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-0878
23 Nov 2013 — The advance_line function in libavcodec/targa.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified impact via crafted Targa image data, related to an out-of-bounds array access. La función advance_line de libavcodec/targa.c en FFmpeg anterior a la versión 1.1.3 permite a atacantes remotos generar un impacto no especificado a través de datos de imagen Targa, relacionado con un array de acceso fuera de límite. Multiple vulnerabilities have been found in FFmpeg, the worst of which could lead... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commitdiff%3Bh=f5955d9f6f9ffdb81864c3de1c7b801782a55725 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-4265 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-4265
23 Nov 2013 — The av_reallocp_array function in libavutil/mem.c in FFmpeg before 2.0.1 has an unspecified impact and remote vectors related to a "wrong return code" and a resultant NULL pointer dereference. La función av_reallocp_array en libavutil/mem.c de FFmpeg anterior a la versión 2.0.1 tiene un impacto sin especificar y vectores remotos relacionados con un "código de retorno incorrecto", resultante en una referencia a puntero nulo. Multiple vulnerabilities have been found in FFmpeg, the worst of which could lead to... • http://www.ffmpeg.org/security.html •
![](/assets/img/cve_300x82_sin_bg.png)
CVE-2013-0874 – Gentoo Linux Security Advisory 201603-06
https://notcve.org/view.php?id=CVE-2013-0874
23 Nov 2013 — The (1) doubles2str and (2) shorts2str functions in libavcodec/tiff.c in FFmpeg before 1.1.3 allow remote attackers to have an unspecified impact via a crafted TIFF image, related to an out-of-bounds array access. Las funciones (1) doubles2str y (2) shorts2str en libavcodec/tiff.c en FFmpeg anterior a la versión 1.1.3 permite a atacantes remotos provocar un impacto no especificado a través de una imagen TIFF manipulada, relacionada con un array de acceso fuera de límite. Multiple vulnerabilities have been f... • http://git.videolan.org/?p=ffmpeg.git%3Ba=commitdiff%3Bh=e1219cdaf9fb4bc8cea410e1caf802373c1bfe51 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •