Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Libvpx HIGH 7.5
CVE-2023-6349

A heap overflow vulnerability exists in libvpx - Encoding a frame that has larger dimensions than the originally configured size with VP9 may result …

Fix: 1.13.1+
Fix from $1,950 2024-05-27
Libwebp HIGH 7.5
CVE-2023-1999

There exists a use after free/double free in libwebp. An attacker can use the ApplyFiltersAndEncode() function and loop through to free best.bw and a…

Fix: 1.3.1+
Fix from $1,950 2023-06-20
Libwebp HIGH 7.5
CVE-2016-9969

In libwebp 0.5.1, there is a double free bug in libwebpmux.

No fix yet
Fix from $1,950 2019-05-23
Libwebm HIGH 7.5
CVE-2019-9746

In libwebm before 2019-03-08, a NULL pointer dereference caused by the functions OutputCluster and OutputTracks in webm_info.cc will trigger an abort…

Fix: after 1.0.0.27
Fix from $1,950 2019-03-13
Libwebm MEDIUM 6.5
CVE-2018-19212

In libwebm through 2018-10-03, there is an abort caused by libwebm::Webm2Pes::InitWebmParser() that will lead to a DoS attack.

Fix: after 1.0.0.27
Fix from $1,600 2018-11-12
Libwebm CRITICAL 9.8
CVE-2018-6548

A use-after-free issue was discovered in libwebm through 2018-02-02. If a Vp9HeaderParser was initialized once before, its property frame_ would not …

Fix: after 1.0.0.27
Fix from $2,300 2018-02-02
Libwebm HIGH 8.8
CVE-2018-6406

The function ParseVP9SuperFrameIndex in common/libwebm_util.cc in libwebm through 2018-01-30 does not validate the child_frame_length data obtained f…

Fix: after 2018-01-30
Fix from $1,950 2018-01-30
Libvpx MEDIUM 5.0
CVE-2012-0823

VP8 Codec SDK (libvpx) before 1.0.0 "Duclair" allows remote attackers to cause a denial of service (application crash) via (1) unspecified "corrupt i…

Fix: after 0.9.7
Fix from $1,600 2012-02-23