vulnerability announce 12352
FFmpeg: several vulnerabilities
Synthesis of the vulnerability
An attacker can create a malicious video, and invite the victim to display it with an application linked to FFmpeg, in order to stop it or to execute code on his computer.
Impacted products: Unix (platform).
Severity: 2/4.
Creation date: 28/01/2013.
Identifiers: BID-57565, BID-57600, VIGILANCE-VUL-12352.
Description of the vulnerability
The FFmpeg suite contains several libraries to process multimedia data.
Several vulnerabilities impact FFmpeg. Technical details are unknown.
An attacker can therefore create a malicious video, and invite the victim to display it with an application linked to FFmpeg, in order to stop it or to execute code on his computer.
Complete Vigil@nce bulletin.... (
free access)
Share this bulletin
Computer vulnerabilities tracking service
Vigil@nce provides a
systems vulnerabilities management. The Vigil@nce vulnerability database contains several thousand vulnerabilities. The Vigil@nce team tracks computer vulnerabilities impacting systems and applications. The technology watch team tracks security threats targeting the computer system.