Michael Niedermayer
80 exploits
Active since Nov 2013
FFmpeg - Denial of Service via ALS Audio Decoder Memory Allocation Failure
CVSS 5.3
FFmpeg 8.0-8.0.1 - Memory Corruption
CVSS 5.4
FFmpeg 3.2-8.0 - Denial of Service via Firequalizer Filter NULL Pointer Dereference
CVSS 5.3
FFmpeg < 2.0 - Heap-Based Buffer Overflow via Crafted Plane
FFmpeg < 2.0.1 - Denial of Service via G2M4 Encoded File
FFmpeg < 2.0.1 - NULL Pointer Dereference via av_reallocp_array
FFmpeg < 2.3.6 - Use-After-Free in H.264 MP4 File Handling
Libav < 11.8 - Denial of Service via NULL Pointer Dereference in get_vlc2
CVSS 5.5
FFmpeg 2.4-3.3.2 - Out-of-bounds Read via Crafted APE File
CVSS 7.8
FFmpeg 3.3.2 - Denial of Service via Crafted RTMP Stream
CVSS 7.5
FFmpeg 3.0-3.3.2 - Out-of-bounds Read in DNxHD Decoder
CVSS 7.8
FFmpeg 3.3.3 - Denial of Service via Crafted MV File Header
CVSS 6.5
FFmpeg 2.4 and 3.3.3 - Denial of Service via Infinite Loop in HLS Playlist Reload
CVSS 6.5
FFmpeg 3.3.3 - Denial of Service via Crafted MOV File in read_tfra()
CVSS 6.5
FFmpeg - Denial of Service via ASF File with Large 'ict' Field
CVSS 6.5
FFmpeg 3.3.3 - NULL Pointer Dereference in av_color_primaries_name
CVSS 8.8
FFmpeg < 3.3.3 - Heap Buffer Overflow via Empty sprop-parameter-sets in SDP File
CVSS 8.8
FFmpeg < 3.3.4 - Out-of-bounds Read in read_header Function
CVSS 8.8
Libav < 11.11 and 12.x < 12.1 - Denial of Service via Smacker Stream Recursion
CVSS 7.5
FFmpeg 2.3 and 3.4 - Out-of-bounds Read in gmc_mmx Function
CVSS 6.5
FFmpeg < 2.8.10 - Out-of-bounds Write in decode_frame Function
CVSS 9.8
FFmpeg < 2.8.10 - Out-of-bounds Write in PNG Decoder
CVSS 9.8
FFmpeg < 2.8.9 - Out-of-bounds Write via ipvideo_decode_block_opcode_0xA
CVSS 9.8
FFmpeg < 2.8.9 - Out-of-bounds Write via decode_zbuf Function
CVSS 9.8
FFmpeg < 3.3 - Stack-based Buffer Overflow in color_string_to_rgba
CVSS 8.8