Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3p7f-4r2q-wxmm

Опубликовано: 19 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. This can lead to memory corruption within the AV1 decoder. We recommend upgrading past version 1.4.0 of dav1d.

An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. This can lead to memory corruption within the AV1 decoder. We recommend upgrading past version 1.4.0 of dav1d.

EPSS

Процентиль: 51%
0.00275
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 5.9
ubuntu
почти 2 года назад

An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. This can lead to memory corruption within the AV1 decoder. We recommend upgrading past version 1.4.0 of dav1d.

CVSS3: 5.9
nvd
почти 2 года назад

An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. This can lead to memory corruption within the AV1 decoder. We recommend upgrading past version 1.4.0 of dav1d.

CVSS3: 5.9
debian
почти 2 года назад

An integer overflow in dav1d AV1 decoder that can occur when decoding ...

suse-cvrf
почти 2 года назад

Security update for dav1d

suse-cvrf
почти 2 года назад

Security update for dav1d

EPSS

Процентиль: 51%
0.00275
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-190