|
|
| |
|
| |
ffmpeg: several vulnerabilities
| Package(s): | ffmpeg, ffmpeg-debian |
CVE #(s): | CVE-2008-4610
CVE-2009-0385
|
| Created: | March 17, 2009 |
Updated: | December 17, 2009 |
| Description: |
From the Ubuntu advisory:
It was discovered that FFmpeg did not correctly handle certain malformed
Ogg Media (OGM) files. If a user were tricked into opening a crafted Ogg
Media file, an attacker could cause the application using FFmpeg to crash,
leading to a denial of service.
It was discovered that FFmpeg did not correctly handle certain malformed 4X
movie (4xm) files. If a user were tricked into opening a crafted 4xm file,
an attacker could execute arbitrary code with the privileges of the user
invoking the program. |
| Alerts: |
|
( Log in to post comments)
|
|
|