CVE-2011-2160
20.05.2011, 22:55
The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an unspecified impact via a crafted VC-1 file, a related issue to CVE-2011-0723.Enginsight
Vendor | Product | Version |
---|---|---|
ffmpeg | ffmpeg | 𝑥 ≤ 0.5.3 |
ffmpeg | ffmpeg | 0.3 |
ffmpeg | ffmpeg | 0.3.1 |
ffmpeg | ffmpeg | 0.3.2 |
ffmpeg | ffmpeg | 0.3.3 |
ffmpeg | ffmpeg | 0.3.4 |
ffmpeg | ffmpeg | 0.4.0 |
ffmpeg | ffmpeg | 0.4.2 |
ffmpeg | ffmpeg | 0.4.3 |
ffmpeg | ffmpeg | 0.4.4 |
ffmpeg | ffmpeg | 0.4.5 |
ffmpeg | ffmpeg | 0.4.6 |
ffmpeg | ffmpeg | 0.4.7 |
ffmpeg | ffmpeg | 0.4.8 |
ffmpeg | ffmpeg | 0.4.9:pre1 |
ffmpeg | ffmpeg | 0.5 |
ffmpeg | ffmpeg | 0.5.1 |
ffmpeg | ffmpeg | 0.5.2 |
mplayerhq | mplayer | * |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|
ffmpeg |
| ||||||||||
ffmpeg-extra |
| ||||||||||
libav |
| ||||||||||
libav-extra |
|
Common Weakness Enumeration