Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-1580

Опубликовано: 19 фев. 2024
Источник: debian
EPSS Низкий

Описание

An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. This can lead to memory corruption within the AV1 decoder. We recommend upgrading past version 1.4.0 of dav1d.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dav1dfixed1.4.0-1package

Примечания

  • https://code.videolan.org/videolan/dav1d/commit/2b475307dc11be9a1c3cc4358102c76a7f386a51 (1.4.0)

  • https://bugs.chromium.org/p/project-zero/issues/detail?id=2502

EPSS

Процентиль: 77%
0.01835
Низкий

Связанные уязвимости

CVSS3: 5.9
ubuntu
больше 2 лет назад

An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. This can lead to memory corruption within the AV1 decoder. We recommend upgrading past version 1.4.0 of dav1d.

CVSS3: 5.9
nvd
больше 2 лет назад

An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. This can lead to memory corruption within the AV1 decoder. We recommend upgrading past version 1.4.0 of dav1d.

msrc
6 месяцев назад

Integer overflow in VideoLAN dav1d

suse-cvrf
больше 2 лет назад

Security update for dav1d

suse-cvrf
больше 2 лет назад

Security update for dav1d

EPSS

Процентиль: 77%
0.01835
Низкий