Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.67347
Category:Ubuntu Local Security Checks
Title:Ubuntu USN-931-1 (ffmpeg-debian)
Summary:NOSUMMARY
Description:Description:
The remote host is missing an update to ffmpeg-debian
announced via advisory USN-931-1.

Details follow:

It was discovered that FFmpeg contained multiple security issues when
handling certain multimedia files. If a user were tricked into opening a
crafted multimedia file, an attacker could cause a denial of service via
application crash, or possibly execute arbitrary code with the privileges
of the user invoking the program.

Solution:
The problem can be corrected by upgrading your system to the
following package versions:

Ubuntu 8.04 LTS:
libavcodec1d 3:0.cvs20070307-5ubuntu7.4
libavformat1d 3:0.cvs20070307-5ubuntu7.4

Ubuntu 8.10:
libavcodec51 3:0.svn20080206-12ubuntu3.2
libavformat52 3:0.svn20080206-12ubuntu3.2

Ubuntu 9.04:
libavcodec52 3:0.svn20090303-1ubuntu6.1
libavformat52 3:0.svn20090303-1ubuntu6.1

Ubuntu 9.10:
libavcodec52 4:0.5+svn20090706-2ubuntu2.1
libavformat52 4:0.5+svn20090706-2ubuntu2.1

In general, a standard system upgrade is sufficient to effect the
necessary changes.

http://www.securityspace.com/smysecure/catid.html?in=USN-931-1

Risk factor : Critical

CVSS Score:
10.0

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2009-4632
BugTraq ID: 36465
http://www.securityfocus.com/bid/36465
Debian Security Information: DSA-2000 (Google Search)
http://www.debian.org/security/2010/dsa-2000
http://www.mandriva.com/security/advisories?name=MDVSA-2011:060
http://www.mandriva.com/security/advisories?name=MDVSA-2011:061
http://www.mandriva.com/security/advisories?name=MDVSA-2011:088
http://www.mandriva.com/security/advisories?name=MDVSA-2011:112
http://www.mandriva.com/security/advisories?name=MDVSA-2011:114
http://scarybeastsecurity.blogspot.com/2009/09/patching-ffmpeg-into-shape.html
https://roundup.ffmpeg.org/roundup/ffmpeg/issue1240
http://secunia.com/advisories/36805
http://secunia.com/advisories/38643
http://secunia.com/advisories/39482
http://www.ubuntu.com/usn/USN-931-1
http://www.vupen.com/english/advisories/2010/0935
http://www.vupen.com/english/advisories/2011/1241
Common Vulnerability Exposure (CVE) ID: CVE-2009-4633
Common Vulnerability Exposure (CVE) ID: CVE-2009-4634
http://www.mandriva.com/security/advisories?name=MDVSA-2011:059
Common Vulnerability Exposure (CVE) ID: CVE-2009-4635
Common Vulnerability Exposure (CVE) ID: CVE-2009-4637
Common Vulnerability Exposure (CVE) ID: CVE-2009-4639
Common Vulnerability Exposure (CVE) ID: CVE-2009-4640
CopyrightCopyright (c) 2010 E-Soft Inc. http://www.securityspace.com

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.