From 8fd50d9cdd42823ea03f8a38c0bb602e398bae54 Mon Sep 17 00:00:00 2001 From: Jan Beich Date: Tue, 1 Sep 2015 13:42:57 +0000 Subject: [PATCH] Document recent ffmpeg/libav vulnerabilities --- security/vuxml/vuln.xml | 176 ++++++++++++++++++++++++++++++++++++++++ 1 file changed, 176 insertions(+) diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 1279c726bb17..73fe006748f8 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -58,6 +58,182 @@ Notes: --> + + ffmpeg -- out-of-bounds array access + + + libav + 11.011.4 + 10.7 + + + gstreamer1-libav + + 1.5.1 + + + handbrake + + + 0 + + + ffmpeg + 2.2.0,12.2.15,1 + 2.0.7,1 + + + ffmpeg26 + 2.6.2 + + + ffmpeg25 + 2.5.6 + + + ffmpeg24 + 2.4.8 + + + ffmpeg23 + + + 0 + + + ffmpeg1 + + + 0 + + + avidemux + avidemux26 + + + 0 + + + kodi + + 15.1 + + + mplayer + mencoder + + 1.1.r20150403 + + + mythtv + mythtv-frontend + + + 0 + + + + +

NVD reports:

+
+

The msrle_decode_pal4 function in msrledec.c in Libav + before 10.7 and 11.x before 11.4 and FFmpeg before 2.0.7, + 2.2.x before 2.2.15, 2.4.x before 2.4.8, 2.5.x before 2.5.6, + and 2.6.x before 2.6.2 allows remote attackers to have + unspecified impact via a crafted image, related to a pixel + pointer, which triggers an out-of-bounds array access.

+
+ +
+ + CVE-2015-3395 + https://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=f7e1367f58263593e6cee3c282f7277d7ee9d553 + https://git.libav.org/?p=libav.git;a=commit;h=5ecabd3c54b7c802522dc338838c9a4c2dc42948 + https://ffmpeg.org/security.html + https://git.libav.org/?p=libav.git;a=blob;f=Changelog;hb=refs/tags/v11.4 + + + 2015-04-12 + 2015-09-01 + +
+ + + ffmpeg -- use after free + + + libav + 11.011.4 + 10.7 + + + gstreamer1-libav + + 1.5.0 + + + handbrake + + + 0 + + + ffmpeg + 2.2.0,12.2.12,1 + 2.1.0,12.1.7,1 + 2.0.7,1 + + + ffmpeg25 + 2.5.2 + + + ffmpeg24 + 2.4.5 + + + ffmpeg23 + 2.3.6 + + + ffmpeg1 + 1.2.11 + + + mythtv + mythtv-frontend + + + 0 + + + + +

NVD reports:

+
+

Use-after-free vulnerability in the ff_h264_free_tables + function in libavcodec/h264.c in FFmpeg before 2.3.6 allows + remote attackers to cause a denial of service or possibly + have unspecified other impact via crafted H.264 data in an + MP4 file, as demonstrated by an HTML VIDEO element that + references H.264 data.

+
+ +
+ + CVE-2015-3417 + + https://git.videolan.org/?p=ffmpeg.git;a=commitdiff;h=e8714f6f93d1a32f4e4655209960afcf4c185214 + https://git.libav.org/?p=libav.git;a=commitdiff;h=3b69f245dbe6e2016659a45c4bfe284f6c5ac57e + https://ffmpeg.org/security.html + https://git.libav.org/?p=libav.git;a=blob;f=Changelog;hb=refs/tags/v11.4 + + + 2014-12-19 + 2015-09-01 + +
+ graphviz -- format string vulnerability