Mandriva Linux Security Advisory 2011-089

0
41

Mandriva Linux Security Advisory 2011-089 – FFmpeg 0.5 allows remote attackers to cause a denial of service via a crafted file that triggers an infinite loop. flicvideo.c in libavcodec 0.6 and earlier in FFmpeg, as used in MPlayer and other products, allows remote attackers to execute arbitrary code via a crafted flic file, related to an arbitrary offset dereference vulnerability. Various other issues were also addressed.

Source: Mandriva Linux Security Advisory 2011-089