Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
libav vulnerabilities and exploits
(subscribe to this query)
6.8
CVSSv2
CVE-2017-17129
The ff_vc1_mc_4mv_chroma4 function in libavcodec/vc1_mc.c in Libav 12.2 allows remote malicious users to cause a denial of service (segmentation fault and application crash) or possibly have unspecified other impact via a crafted file.
Libav Libav 12.2
5
CVSSv2
CVE-2018-11102
An issue exists in Libav 12.3. A read access violation in the mov_probe function in libavformat/mov.c allows remote malicious users to cause a denial of service (application crash), as demonstrated by avconv.
Libav Libav 12.3
4.3
CVSSv2
CVE-2018-18827
There exists a heap-based buffer over-read in ff_vc1_pred_dc in vc1_block.c in Libav 12.3, which allows malicious users to cause a denial-of-service via a crafted aac file.
Libav Libav 12.3
4.3
CVSSv2
CVE-2018-18829
There exists a NULL pointer dereference in ff_vc1_parse_frame_header_adv in vc1.c in Libav 12.3, which allows malicious users to cause a denial-of-service through a crafted aac file.
Libav Libav 12.3
4.3
CVSSv2
CVE-2020-18778
In Libav 12.3, there is a heap-based buffer over-read in vc1_decode_p_mb_intfi in vc1_block.c that allows an malicious user to cause denial-of-service via a crafted file.
Libav Libav 12.3
4.3
CVSSv2
CVE-2016-7499
The sbr_make_f_master function in aacsbr.c in Libav 11.7 allows remote malicious users to cause a denial of service (divide-by-zero error and application crash) via a crafted mp3 file.
Libav Libav 11.7
5
CVSSv2
CVE-2017-9987
There is a heap-based buffer overflow in the function hpel_motion in mpegvideo_motion.c in libav 12.1. A crafted input can lead to a remote denial of service attack.
Libav Libav 12.1
4.3
CVSSv2
CVE-2017-18242
The apply_dependent_coupling function in libavcodec/aacdec.c in Libav 12.2 allows remote malicious users to cause a denial of service (out-of-bounds read) via a crafted aac file.
Libav Libav 12.2
4.3
CVSSv2
CVE-2017-18243
The unpack_parse_unit function in libavcodec/dirac_parser.c in Libav 12.2 allows remote malicious users to cause a denial of service (segmentation fault) via a crafted file.
Libav Libav 12.2
4.3
CVSSv2
CVE-2017-18244
The stereo_processing function in libavcodec/aacps.c in Libav 12.2 allows remote malicious users to cause a denial of service (out-of-bounds read) via a crafted aac file, related to ff_ps_apply.
Libav Libav 12.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-34377
CVE-2024-20859
CVE-2023-49606
inject
arbitrary
CVE-2024-33788
CVE-2024-30973
IDOR
CVE-2024-33907
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »