First published: Wed Dec 07 2005(Updated: )
Heap-based buffer overflow in the avcodec_default_get_buffer function (utils.c) in FFmpeg libavcodec 0.4.9-pre1 and earlier, as used in products such as (1) mplayer, (2) xine-lib, (3) Xmovie, and (4) GStreamer, allows remote attackers to execute arbitrary commands via small PNG images with palettes.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
FFmpeg FFmpeg | =0.4.6 | |
FFmpeg FFmpeg | =0.4.7 | |
FFmpeg FFmpeg | =0.4.8 | |
FFmpeg FFmpeg | =0.4.9 | |
FFmpeg FFmpeg | =cvs |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.