Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Mplayerhq

First CVE: Sep 30, 2010Active for: 16 yearsTotal CVEs: 20
16.6
VTI Score
Low

MplayerHQ maintains a focused media-player and transcoding product line centered on MPlayer and MEncoder, tools widely embedded in multimedia workflows and third-party applications despite their narrow official footprint. The vendor's vulnerability disclosures, while modest in volume, concentrate around parser and codec handling, surfacing recurrent weaknesses including out-of-bounds writes, divide-by-zero conditions, buffer-boundary violations, and input-validation gaps that are characteristic of complex media-format processing. These weakness classes reflect the parsing demands of a tool exposed to untrusted media files from diverse sources, where format edge cases and malformed streams can trigger memory corruption or logic errors. Defenders should treat media-player updates as part of supply-chain inventory for any system that processes user-supplied media files or embeds these tools indirectly; live severity, exploitation, and exposure counts are shown alongside this summary.

FAUCET AI Generated
20
Total CVEs
More Total CVEs than 96% of tracked vendors
3.3
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 95% of tracked vendors
6.2
Avg CVSS Score
Higher Avg CVSS Score than 36% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Mplayerhq over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 30, 2010
15 years ago
Most Recent CVE
Sep 15, 2022
1,409 days ago

Products(2 total)

Top CVEs

Signals from CVEs in this vendor scope (20 CVEs).

20 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2011-2162HIGH
Multiple unspecified vulnerabilities in FFmpeg 0.4.x through 0.6.x, as used in MPlayer 1.0 and other products, in Mandriva Linux 2009.0, 2010.0, and 2010.1; Corporate Server 4.0 (a
May 20, 201110.031NONO
CVE-2011-2160HIGH
The VC-1 decoding functionality in FFmpeg before 0.5.4, as used in MPlayer and other products, does not properly restrict read operations, which allows remote attackers to have an
May 20, 20119.328NONO
CVE-2022-38862HIGH
Certain The MPlayer Project products are vulnerable to Buffer Overflow via function play() of libaf/af.c:639. This affects mplayer SVN-r38374-13.0.1 and mencoder SVN-r38374-13.0.1.
Sep 15, 20227.825NONO
CVE-2011-0722MEDIUM
FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute
May 20, 20116.823NONO
CVE-2010-3908MEDIUM
FFmpeg before 0.5.4, as used in MPlayer and other products, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbit
May 20, 20116.823NONO
CVE-2010-3429MEDIUM
flicvideo.c in libavcodec 0.6 and earlier in FFmpeg, as used in MPlayer and other products, allows remote attackers to execute arbitrary code via a crafted flic file, related to an
Sep 30, 20106.823NONO
CVE-2022-38851MEDIUM
Certain The MPlayer Project products are vulnerable to Out-of-bounds Read via function read_meta_record() of mplayer/libmpdemux/asfheader.c. This affects mplayer SVN-r38374-13.0.1
Sep 15, 20225.521NONO
CVE-2022-38600MEDIUM
Mplayer SVN-r38374-13.0.1 is vulnerable to Memory Leak via vf.c and vf_vo.c.
Sep 15, 20225.521NONO
CVE-2022-38866MEDIUM
Certain The MPlayer Project products are vulnerable to Buffer Overflow via read_avi_header() of libmpdemux/aviheader.c . This affects mplayer SVN-r38374-13.0.1 and mencoder SVN-r38
Sep 15, 20225.521NONO
CVE-2022-38865MEDIUM
Certain The MPlayer Project products are vulnerable to Divide By Zero via the function demux_avi_read_packet of libmpdemux/demux_avi.c. This affects mplyer SVN-r38374-13.0.1 and me
Sep 15, 20225.521NONO
View all 20 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products20 CVEs
85%
15%
Severity distribution among all CVEs352,708 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local15 (75.0%)
Network0 (0.0%)
Unknown5 (25.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low15 (75.0%)
High0 (0.0%)
Unknown5 (25.0%)
User Interaction
None0 (0.0%)
Unknown5 (25.0%)
Required15 (75.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None15 (75.0%)
Unknown5 (25.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (20 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Mplayerhq.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Mplayerhq — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Mplayerhq's Products

View all 2 CNAs →

Top CWEs