Description
Heap-based buffer overflow in the avcodec_default_get_buffer function (utils.c) in FFmpeg libavcodec 0.4.9-pre1 and earlier, as used in products such as (1) mplayer, (2) xine-lib, (3) Xmovie, and (4) GStreamer, allows remote attackers to execute arbitrary commands via small PNG images with palettes.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-1004-1 | New vlc packages fix arbitrary code execution |
Debian DSA |
DSA-1005-1 | New xine-lib packages fix arbitrary code execution |
Debian DSA |
DSA-992-1 | New ffmpeg packages fix arbitrary code execution |
EUVD |
EUVD-2005-4043 | Heap-based buffer overflow in the avcodec_default_get_buffer function (utils.c) in FFmpeg libavcodec 0.4.9-pre1 and earlier, as used in products such as (1) mplayer, (2) xine-lib, (3) Xmovie, and (4) GStreamer, allows remote attackers to execute arbitrary commands via small PNG images with palettes. |
Ubuntu USN |
USN-230-1 | ffmpeg vulnerability |
Ubuntu USN |
USN-230-2 | ffmpeg/xine-lib vulnerability |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T23:31:48.965Z
Reserved: 2005-12-07T00:00:00.000Z
Link: CVE-2005-4048
No data.
Status : Modified
Published: 2005-12-07T11:03:00.000
Modified: 2026-04-16T00:27:16.627
Link: CVE-2005-4048
No data.
OpenCVE Enrichment
No data.
Weaknesses
Debian DSA
EUVD
Ubuntu USN