CVE Feed

    Dashboard / CVE

    6.8
    Medium

    CVE-2013-7014

    Last Modified: 11 Apr 2025

    Integer signedness error in the add_bytes_l2_c function in libavcodec/pngdsp.c in FFmpeg before 2.1 allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted PNG data.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2013-7016

    Last Modified: 11 Apr 2025

    The get_siz function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not ensure the expected sample separation, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted JPEG2000 data.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2013-7021

    Last Modified: 11 Apr 2025

    The filter_frame function in libavfilter/vf_fps.c in FFmpeg before 2.1 does not properly ensure the availability of FIFO content, which allows remote attackers to cause a denial of service (double free) or possibly have unspecified other impact via crafted data.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2013-7022

    Last Modified: 11 Apr 2025

    The g2m_init_buffers function in libavcodec/g2meet.c in FFmpeg before 2.1 does not properly allocate memory for tiles, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Go2Webinar data.

    Published: 9 Dec 2013
    3.5
    Low

    CVE-2013-7025

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in ematStaticAlertTypes.jsp in the Alert Settings section in Dell SonicWALL Global Management System (GMS), Analyzer, and UMA EM5000 7.1 SP1 before Hotfix 134235 allow remote authenticated users to inject arbitrary web script or HTML via the (1) valfield_1 or (2) value_1 parameter to createNewThreshold.jsp.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2013-7024

    Last Modified: 11 Apr 2025

    The jpeg2000_decode_tile function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not consider the component number in certain calculations, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted JPEG2000 data.

    Published: 9 Dec 2013
    7.5
    High

    CVE-2011-3941

    Last Modified: 11 Apr 2025

    The decode_mb function in libavcodec/error_resilience.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impact via vectors related to an uninitialized block index, which triggers an out-of-bounds write.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2011-3944

    Last Modified: 11 Apr 2025

    The smacker_decode_header_tree function in libavcodec/smacker.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impact via crafted Smacker data.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2011-3946

    Last Modified: 11 Apr 2025

    The ff_h264_decode_sei function in libavcodec/h264_sei.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impact via crafted Supplemental enhancement information (SEI) data, which triggers an infinite loop.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2011-3949

    Last Modified: 11 Apr 2025

    The dirac_unpack_idwt_params function in libavcodec/diracdec.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impact via crafted Dirac data.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2011-3950

    Last Modified: 11 Apr 2025

    The dirac_decode_data_unit function in libavcodec/diracdec.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impact via a crafted value in the reference pictures number.

    Published: 9 Dec 2013
    7.5
    High

    CVE-2011-4351

    Last Modified: 11 Apr 2025

    Buffer overflow in FFmpeg before 0.5.6, 0.6.x before 0.6.4, 0.7.x before 0.7.8, and 0.8.x before 0.8.8 allows remote attackers to execute arbitrary code via unspecified vectors.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2013-7015

    Last Modified: 11 Apr 2025

    The flashsv_decode_frame function in libavcodec/flashsv.c in FFmpeg before 2.1 does not properly validate a certain height value, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Flash Screen Video data.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2013-7017

    Last Modified: 11 Apr 2025

    libavcodec/jpeg2000.c in FFmpeg before 2.1 allows remote attackers to cause a denial of service (invalid pointer dereference) or possibly have unspecified other impact via crafted JPEG2000 data.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2013-7018

    Last Modified: 11 Apr 2025

    libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not ensure the use of valid code-block dimension values, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted JPEG2000 data.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2013-7019

    Last Modified: 11 Apr 2025

    The get_cox function in libavcodec/jpeg2000dec.c in FFmpeg before 2.1 does not properly validate the reduction factor, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted JPEG2000 data.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2011-3935

    Last Modified: 11 Apr 2025

    The codec_get_buffer function in ffmpeg.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impact via vectors related to a crafted image size.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2013-7009

    Last Modified: 11 Apr 2025

    The rpza_decode_stream function in libavcodec/rpza.c in FFmpeg before 2.1 does not properly maintain a pointer to pixel data, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted Apple RPZA data.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2013-7011

    Last Modified: 11 Apr 2025

    The read_header function in libavcodec/ffv1dec.c in FFmpeg before 2.1 does not prevent changes to global parameters, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted FFV1 data.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2013-7020

    Last Modified: 11 Apr 2025

    The read_header function in libavcodec/ffv1dec.c in FFmpeg before 2.1 does not properly enforce certain bit-count and colorspace constraints, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact via crafted FFV1 data.

    Published: 9 Dec 2013
    6.8
    Medium

    CVE-2011-3934

    Last Modified: 11 Apr 2025

    Double free vulnerability in the vp3_update_thread_context function in libavcodec/vp3.c in FFmpeg before 0.10 allows remote attackers to have an unspecified impact via crafted vp3 data.

    Published: 9 Dec 2013
    8.1
    High

    CVE-2014-3120

    Last Modified: 22 Apr 2026

    The default configuration in Elasticsearch before 1.2 enables dynamic scripting, which allows remote attackers to execute arbitrary MVEL expressions and Java code via the source parameter to _search. NOTE: this only violates the vendor's intended security policy if the user does not run Elasticsearch in its own independent virtual machine.

    Published: 9 Dec 2013
    8.3
    High

    CVE-2013-4408

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in the dcerpc_read_ncacn_packet_done function in librpc/rpc/dcerpc_util.c in winbindd in Samba 3.x before 3.6.22, 4.0.x before 4.0.13, and 4.1.x before 4.1.3 allows remote AD domain controllers to execute arbitrary code via an invalid fragment length in a DCE-RPC packet.

    Published: 9 Dec 2013
    4.3
    Medium

    CVE-2013-7040

    Last Modified: 12 Apr 2025

    Python 2.7 before 3.4 only uses the last eight bits of the prefix to randomize hash values, which causes it to compute hash values without restricting the ability to trigger hash collisions predictably and makes it easier for context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-1150.

    Published: 9 Dec 2013
    3.6
    Low

    CVE-2013-2930

    Last Modified: 11 Apr 2025

    The perf_trace_event_perm function in kernel/trace/trace_event_perf.c in the Linux kernel before 3.12.2 does not properly restrict access to the perf subsystem, which allows local users to enable function tracing via a crafted application.

    Published: 9 Dec 2013
    9.3
    Critical

    CVE-2013-0850

    Last Modified: 11 Apr 2025

    The decode_slice_header function in libavcodec/h264.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted H.264 data, which triggers an out-of-bounds array access.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0855

    Last Modified: 11 Apr 2025

    Integer overflow in the alac_decode_close function in libavcodec/alac.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via a large number of samples per frame in Apple Lossless Audio Codec (ALAC) data, which triggers an out-of-bounds array access.

    Published: 7 Dec 2013
    5.8
    Medium

    CVE-2013-6389

    Last Modified: 11 Apr 2025

    Open redirect vulnerability in the Overlay module in Drupal 7.x before 7.24 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

    Published: 7 Dec 2013
    4.3
    Medium

    CVE-2013-7001

    Last Modified: 11 Apr 2025

    The Multimedia Messaging Centre (MMSC) in NowSMS Now SMS & MMS Gateway before 2013.11.15 allows remote attackers to cause a denial of service via a malformed MM1 message that is routed to a (1) MM4 or (2) MM7 connection.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0845

    Last Modified: 11 Apr 2025

    libavcodec/alsdec.c in FFmpeg before 1.0.4 allows remote attackers to have an unspecified impact via a crafted block length, which triggers an out-of-bounds write.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0847

    Last Modified: 11 Apr 2025

    The ff_id3v2_parse function in libavformat/id3v2.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via ID3v2 header data, which triggers an out-of-bounds array access.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0848

    Last Modified: 11 Apr 2025

    The decode_init function in libavcodec/huffyuv.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via a crafted width in huffyuv data with the predictor set to median and the colorspace set to YUV422P, which triggers an out-of-bounds array access.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0849

    Last Modified: 11 Apr 2025

    The roq_decode_init function in libavcodec/roqvideodec.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via a crafted (1) width or (2) height dimension that is not a multiple of sixteen in id RoQ video data.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0852

    Last Modified: 11 Apr 2025

    The parse_picture_segment function in libavcodec/pgssubdec.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted RLE data, which triggers an out-of-bounds array access.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0854

    Last Modified: 11 Apr 2025

    The mjpeg_decode_scan_progressive_ac function in libavcodec/mjpegdec.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted MJPEG data.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0856

    Last Modified: 11 Apr 2025

    The lpc_prediction function in libavcodec/alac.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted Apple Lossless Audio Codec (ALAC) data, related to a large nb_samples value.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0857

    Last Modified: 11 Apr 2025

    The decode_frame_ilbm function in libavcodec/iff.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via a crafted height value in IFF PBM/ILBM bitmap data.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0859

    Last Modified: 11 Apr 2025

    The add_doubles_metadata function in libavcodec/tiff.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via a negative or zero count value in a TIFF image, which triggers an out-of-bounds array access.

    Published: 7 Dec 2013
    5.1
    Medium

    CVE-2013-6385

    Last Modified: 11 Apr 2025

    The form API in Drupal 6.x before 6.29 and 7.x before 7.24, when used with unspecified third-party modules, performs form validation even when CSRF validation has failed, which might allow remote attackers to trigger application-specific impacts such as arbitrary code execution via application-specific vectors.

    Published: 7 Dec 2013
    6.8
    Medium

    CVE-2013-6386

    Last Modified: 11 Apr 2025

    Drupal 6.x before 6.29 and 7.x before 7.24 uses the PHP mt_rand function to generate random numbers, which uses predictable seeds and allows remote attackers to predict security strings and bypass intended restrictions via a brute force attack.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0844

    Last Modified: 11 Apr 2025

    Off-by-one error in the adpcm_decode_frame function in libavcodec/adpcm.c in FFmpeg before 1.0.4 allows remote attackers to have an unspecified impact via crafted DK4 data, which triggers an out-of-bounds array access.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0846

    Last Modified: 11 Apr 2025

    Array index error in the qdm2_decode_super_block function in libavcodec/qdm2.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted QDM2 data, which triggers an out-of-bounds array access.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0851

    Last Modified: 11 Apr 2025

    The decode_frame function in libavcodec/eamad.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted Electronic Arts Madcow video data, which triggers an out-of-bounds array access.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0853

    Last Modified: 11 Apr 2025

    The wavpack_decode_frame function in libavcodec/wavpack.c in FFmpeg before 1.1 allows remote attackers to have an unspecified impact via crafted WavPack data, which triggers an out-of-bounds array access, possibly due to an off-by-one error.

    Published: 7 Dec 2013
    9.3
    Critical

    CVE-2013-0858

    Last Modified: 11 Apr 2025

    The atrac3_decode_init function in libavcodec/atrac3.c in FFmpeg before 1.0.4 allows remote attackers to have an unspecified impact via ATRAC3 data with the joint stereo coding mode set and fewer than two channels.

    Published: 7 Dec 2013
    4.3
    Medium

    CVE-2013-7000

    Last Modified: 11 Apr 2025

    The Multimedia Messaging Centre (MMSC) in NowSMS Now SMS & MMS Gateway 2013.09.26 allows remote attackers to cause a denial of service via a malformed message to a MM4 connection.

    Published: 7 Dec 2013
    4.3
    Medium

    CVE-2013-4171

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Apache Roller before 5.0.2 allow remote attackers to inject arbitrary web script or HTML via vectors related to the search results in the (1) RSS and (2) Atom feed templates.

    Published: 7 Dec 2013
    6.8
    Medium

    CVE-2013-4212

    Last Modified: 11 Apr 2025

    Certain getText methods in the ActionSupport controller in Apache Roller before 5.0.2 allow remote attackers to execute arbitrary OGNL expressions via the first or second parameter, as demonstrated by the pageTitle parameter in the !getPageTitle sub-URL to roller-ui/login.rol, which uses a subclass of UIAction, aka "OGNL Injection."

    Published: 7 Dec 2013
    4.9
    Medium

    CVE-2013-4445

    Last Modified: 11 Apr 2025

    The json rendering functionality in the Context module 6.x-2.x before 6.x-3.2 and 7.x-3.x before 7.x-3.0 for Drupal uses Drupal's token scheme to restrict access to blocks, which makes it easier for remote authenticated users to guess the access token for a block by leveraging the token from a block to which the user has access.

    Published: 7 Dec 2013
    6.8
    Medium

    CVE-2013-4446

    Last Modified: 11 Apr 2025

    The _json_decode function in plugins/context_reaction_block.inc in the Context module 6.x-2.x before 6.x-3.2 and 7.x-3.x before 7.x-3.0 for Drupal, when using a version of PHP that does not support the json_decode function, allows remote attackers to execute arbitrary PHP code via unspecified vectors related to Ajax operations, possibly involving eval injection.

    Published: 7 Dec 2013