Описание
Buffer Overflow vulnerability in libheif 1.19.7 allows a local attacker to execute arbitrary code via the SAO (Sample Adaptive Offset) processing of libde265.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| libde265 | fixed | 1.0.7-1 | package |
Примечания
https://github.com/lmarch2/poc/blob/main/libheif/libheif.md
https://github.com/strukturag/libde265/issues/472
https://github.com/strukturag/libde265/commit/7db4e813947c479fe54453904d992071a7f58b2a (v1.0.5)
EPSS
Связанные уязвимости
Buffer Overflow vulnerability in libheif 1.19.7 allows a local attacker to execute arbitrary code via the SAO (Sample Adaptive Offset) processing of libde265.
Buffer Overflow vulnerability in libheif 1.19.7 allows a local attacker to execute arbitrary code via the SAO (Sample Adaptive Offset) processing of libde265.
Buffer Overflow vulnerability in libheif 1.19.7 allows a local attacker to execute arbitrary code via the SAO (Sample Adaptive Offset) processing of libde265.
EPSS