The libavcodec library, an open source video encoding/decoding library part of the FFmpeg project, suffers from an arbitrary offset dereference vulnerability. The vulnerability affects the flic file format parser, insufficient restrictions on a writable buffer can be exploited to execute arbitrary code via the heap memory. A specific flic file can be crafted to trigger the vulnerability. Versions 0.6 and below are affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/94329/oCERT-2010-004.txt
Source: https://packetstormsecurity.com/files/94329/Open-Source-CERT-Security-Advisory-2010.4.html