Back to search
CVE-2005-4048
Published: Dec 7, 2005
Modified: Aug 7, 2024
PUBLISHED
Description
Heap-based buffer overflow in the avcodec_default_get_buffer function (utils.c) in FFmpeg libavcodec 0.4.9-pre1 and earlier, as used in products such as (1) mplayer, (2) xine-lib, (3) Xmovie, and (4) GStreamer, allows remote attackers to execute arbitrary commands via small PNG images with palettes.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
DSA-992
vendor-advisory
x_refsource_DEBIAN
GLSA-200602-01
vendor-advisory
x_refsource_GENTOO
MDKSA-2005:229
vendor-advisory
x_refsource_MANDRIVA
MDKSA-2005:232
vendor-advisory
x_refsource_MANDRIVA
19272
third-party-advisory
x_refsource_SECUNIA
USN-230-1
vendor-advisory
x_refsource_UBUNTU
DSA-1005
vendor-advisory
x_refsource_DEBIAN
19114
third-party-advisory
x_refsource_SECUNIA
GLSA-200601-06
vendor-advisory
x_refsource_GENTOO
18087
third-party-advisory
x_refsource_SECUNIA
18400
third-party-advisory
x_refsource_SECUNIA
MDKSA-2005:230
vendor-advisory
x_refsource_MANDRIVA
GLSA-200603-03
vendor-advisory
x_refsource_GENTOO
17892
third-party-advisory
x_refsource_SECUNIA
18746
third-party-advisory
x_refsource_SECUNIA
MDKSA-2005:228
vendor-advisory
x_refsource_MANDRIVA
19192
third-party-advisory
x_refsource_SECUNIA
http://article.gmane.org/gmane.comp.video.ffmpeg.devel/26558
x_refsource_MISC
USN-230-2
vendor-advisory
x_refsource_UBUNTU
MDKSA-2005:231
vendor-advisory
x_refsource_MANDRIVA
ADV-2005-2770
vdb-entry
x_refsource_VUPEN
DSA-1004
vendor-advisory
x_refsource_DEBIAN
18739
third-party-advisory
x_refsource_SECUNIA
18107
third-party-advisory
x_refsource_SECUNIA
19279
third-party-advisory
x_refsource_SECUNIA
15743
vdb-entry
x_refsource_BID
18066
third-party-advisory
x_refsource_SECUNIA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now