| CVE-2025-8586 |
BDSA-2025-8141 |
Low |
Aug 05, 2025 |
A vulnerability, which was classified as problematic, was found in libav up to 12.3. This affects the function ff_seek_frame_binary of the file /libavf
more...
A vulnerability, which was classified as problematic, was found in libav up to 12.3. This affects the function ff_seek_frame_binary of the file /libavformat/utils.c of the component MPEG File Parser. The manipulation leads to null pointer dereference. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. The bug was initially reported by the researcher to the wrong project. This vulnerability only affects products that are no longer supported by the maintainer.
less...
|
0.5.6, 12.3, 11.12, 0.8.21, 12.2, 11.10, 12.1, 11.9, 0.8.20, 9.21
|
| CVE-2025-8585 |
BDSA-2025-8140 |
Medium |
Aug 05, 2025 |
A vulnerability, which was classified as critical, has been found in libav up to 12.3. Affected by this issue is the function main of the file /avtools
more...
A vulnerability, which was classified as critical, has been found in libav up to 12.3. Affected by this issue is the function main of the file /avtools/avconv.c of the component DSS File Demuxer. The manipulation leads to double free. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. The bug was initially reported by the researcher to the wrong project. This vulnerability only affects products that are no longer supported by the maintainer.
less...
|
0.5.6, 12.3, 11.12, 0.8.21, 12.2, 11.10, 12.1, 11.9, 0.8.20, 9.21
|
| CVE-2025-8584 |
BDSA-2025-8139 |
Low |
Aug 05, 2025 |
A vulnerability classified as problematic was found in libav up to 12.3. Affected by this vulnerability is the function av_buffer_unref of the file lib
more...
A vulnerability classified as problematic was found in libav up to 12.3. Affected by this vulnerability is the function av_buffer_unref of the file libavutil/buffer.c of the component AVI File Parser. The manipulation leads to null pointer dereference. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. The bug was initially reported by the researcher to the wrong project. This vulnerability only affects products that are no longer supported by the maintainer.
less...
|
0.5.6, 12.3, 11.12, 0.8.21, 12.2, 11.10, 12.1, 11.9, 0.8.20, 9.21
|
| CVE-2019-9720 |
BDSA-2019-3007 |
Medium |
Sep 19, 2019 |
A stack-based buffer overflow in the subtitle decoder in Libav 12.3 allows attackers to corrupt the stack via a crafted video file in Matroska format,
more...
A stack-based buffer overflow in the subtitle decoder in Libav 12.3 allows attackers to corrupt the stack via a crafted video file in Matroska format, because srt_to_ass in libavcodec/srtdec.c misuses snprintf.
less...
|
0.5.6, 12.3, 11.12, 0.8.21, 12.2, 11.10, 12.1, 11.9, 0.8.20, 9.21
|
| CVE-2019-9719 |
BDSA-2019-3011 |
High |
Sep 19, 2019 |
A stack-based buffer overflow in the subtitle decoder in Libav 12.3 allows attackers to corrupt the stack via a crafted video file in Matroska format,
more...
A stack-based buffer overflow in the subtitle decoder in Libav 12.3 allows attackers to corrupt the stack via a crafted video file in Matroska format, because srt_to_ass in libavcodec/srtdec.c misuses snprintf. NOTE: Third parties dispute that this is a vulnerability because “no evidence of a vulnerability is provided” and only “a generic warning from a static code analysis” is provided
less...
|
0.5.6, 12.3, 11.12, 0.8.21, 12.2, 11.10, 12.1, 11.9, 0.8.20, 9.21
|
| CVE-2019-9717 |
BDSA-2019-3012 |
Medium |
Sep 19, 2019 |
In Libav 12.3, a denial of service in the subtitle decoder allows attackers to hog the CPU via a crafted video file in Matroska format, because srt_to_
more...
In Libav 12.3, a denial of service in the subtitle decoder allows attackers to hog the CPU via a crafted video file in Matroska format, because srt_to_ass in libavcodec/srtdec.c has a complex format argument to sscanf.
less...
|
0.5.6, 12.3, 11.12, 0.8.21, 12.2, 11.10, 12.1, 11.9, 0.8.20, 9.21
|
| CVE-2018-5766 |
BDSA-2018-0911 |
High |
Jan 18, 2018 |
In Libav through 12.2, there is an invalid memcpy in the av_packet_ref function of libavcodec/avpacket.c. Remote attackers could leverage this vulnerab
more...
In Libav through 12.2, there is an invalid memcpy in the av_packet_ref function of libavcodec/avpacket.c. Remote attackers could leverage this vulnerability to cause a denial of service (segmentation fault) via a crafted avi file.
less...
|
0.5.6, 11.12, 0.8.21, 12.2, 11.10, 12.1, 11.9, 0.8.20, 9.21, 0.8.19
|
| CVE-2018-5684 |
BDSA-2018-2910 |
High |
Jan 14, 2018 |
In Libav through 12.2, there is an invalid memcpy call in the ff_mov_read_stsd_entries function of libavformat/mov.c. Remote attackers could leverage t
more...
In Libav through 12.2, there is an invalid memcpy call in the ff_mov_read_stsd_entries function of libavformat/mov.c. Remote attackers could leverage this vulnerability to cause a denial of service (segmentation fault) and program failure with a crafted avi file.
less...
|
0.5.6, 11.12, 0.8.21, 12.2, 11.10, 12.1, 11.9, 0.8.20, 9.21, 0.8.19
|
| CVE-2017-9051 |
|
Critical |
May 18, 2017 |
libav before 12.1 is vulnerable to an invalid read of size 1 due to NULL pointer dereferencing in the nsv_read_chunk function in libavformat/nsvdec.c.
libav before 12.1 is vulnerable to an invalid read of size 1 due to NULL pointer dereferencing in the nsv_read_chunk function in libavformat/nsvdec.c.
less...
|
0.5.6, 11.12, 0.8.21, 11.10, 11.9, 0.8.20, 9.21, 0.8.19, 0.7.1, 11.8
|
| CVE-2017-16803 |
BDSA-2017-2879 |
High |
Nov 13, 2017 |
In Libav through 11.11 and 12.x through 12.1, the smacker_decode_tree function in libavcodec/smacker.c does not properly restrict tree recursion, which
more...
In Libav through 11.11 and 12.x through 12.1, the smacker_decode_tree function in libavcodec/smacker.c does not properly restrict tree recursion, which allows remote attackers to cause a denial of service (bitstream.c:build_table() out-of-bounds read and application crash) via a crafted Smacker stream.
less...
|
0.5.6, 0.8.21, 11.10, 12.1, 11.9, 0.8.20, 9.21, 0.8.19, 0.7.1, 11.8
|