Clément Bœsch

2 exploits Active since Apr 2024
CVE-2024-31582 WRITEUP HIGH WRITEUP
Ffmpeg < 7.0 - Heap Buffer Overflow
FFmpeg version n6.1 was discovered to contain a heap buffer overflow vulnerability in the draw_block_rectangle function of libavfilter/vf_codecview.c. This vulnerability allows attackers to cause undefined behavior or a Denial of Service (DoS) via crafted input.
CVSS 7.8
CVE-2024-36615 WRITEUP MEDIUM WRITEUP
FFmpeg n7.0 - Data Race
FFmpeg n7.0 has a race condition vulnerability in the VP9 decoder. This could lead to a data race if video encoding parameters were being exported, as the side data would be attached in the decoder thread while being read in the output thread.
CVSS 5.9