LWN.net Logo

ffmpeg: unspecified vulnerabilities

Package(s):ffmpeg CVE #(s):CVE-2008-4868 CVE-2008-4869
Created:March 20, 2009 Updated:December 7, 2009
Description: From the CVE entries:

Unspecified vulnerability in the avcodec_close function in libavcodec/utils.c in FFmpeg 0.4.9 before r14787, as used by MPlayer, has unknown impact and attack vectors, related to a free "on random pointers."

FFmpeg 0.4.9, as used by MPlayer, allows context-dependent attackers to cause a denial of service (memory consumption) via unknown vectors, aka a "Tcp/udp memory leak."

Alerts:
Mandriva MDVSA-2009:297-1 2009-12-05
Mandriva MDVSA-2009:297 2009-11-13
Gentoo 200903-33 2009-03-19

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds