Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
libav vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv3
CVE-2018-18829
There exists a NULL pointer dereference in ff_vc1_parse_frame_header_adv in vc1.c in Libav 12.3, which allows malicious users to cause a denial-of-service through a crafted aac file.
Libav Libav 12.3
5.5
CVSSv3
CVE-2016-9821
Integer overflow in libavcodec/mpegvideo_parser.c in libav 11.8 allows remote malicious users to cause a denial of service (crash) via a crafted file.
Libav Libav 11.8
6.5
CVSSv3
CVE-2017-5984
In libavcodec in Libav 9.21, ff_h264_execute_ref_pic_marking() has a heap-based buffer over-read.
Libav Libav 9.21
6.5
CVSSv3
CVE-2017-17127
The vc1_decode_frame function in libavcodec/vc1dec.c in Libav 12.2 allows remote malicious users to cause a denial of service (NULL pointer dereference and application crash) via a crafted file.
Libav Libav 12.2
8.8
CVSSv3
CVE-2017-17129
The ff_vc1_mc_4mv_chroma4 function in libavcodec/vc1_mc.c in Libav 12.2 allows remote malicious users to cause a denial of service (segmentation fault and application crash) or possibly have unspecified other impact via a crafted file.
Libav Libav 12.2
5.5
CVSSv3
CVE-2016-7477
The ff_put_pixels8_xy2_mmx function in rnd_template.c in Libav 11.7 allows remote malicious users to cause a denial of service (invalid memory access and crash) via a crafted mp3 file. NOTE: this issue was originally reported as involving a NULL pointer dereference.
Libav Libav 11.7
5.5
CVSSv3
CVE-2016-7499
The sbr_make_f_master function in aacsbr.c in Libav 11.7 allows remote malicious users to cause a denial of service (divide-by-zero error and application crash) via a crafted mp3 file.
Libav Libav 11.7
7.1
CVSSv3
CVE-2017-7206
The ff_h2645_extract_rbsp function in libavcodec in libav 9.21 allows remote malicious users to cause a denial of service (heap-based buffer over-read) or obtain sensitive information from process memory via a crafted h264 video file.
Libav Libav 9.21
7.1
CVSSv3
CVE-2017-7208
The decode_residual function in libavcodec in libav 9.21 allows remote malicious users to cause a denial of service (buffer over-read) or obtain sensitive information from process memory via a crafted h264 video file.
Libav Libav 9.21
6.5
CVSSv3
CVE-2019-14372
In Libav 12.3, there is an infinite loop in the function wv_read_block_header() in the file wvdec.c.
Libav Libav 12.3
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
firmware
CVE-2023-52866
CVE-2024-4367
CVE-2024-1721
CVE-2023-34992
XML injection
CVE-2023-52817
SQL
CVE-2023-52855
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »