Vulnerability index

Browse CVEs

12 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Libavif CRITICAL 9.1
CVE-2025-48174

In libavif before 1.3.0, makeRoom in stream.c has an integer overflow and resultant buffer overflow in stream->offset+size.

Fix: 1.3.0+
Fix from $2,300 2025-05-16
Libavif MEDIUM 6.5
CVE-2025-48175

In libavif before 1.3.0, avifImageRGBToYUV in reformat.c has integer overflows in multiplications involving rgbRowBytes, yRowBytes, uRowBytes, and vR…

Fix: 1.3.0+
Fix from $1,600 2025-05-16
Libaom CRITICAL 9.8
CVE-2024-5171

Integer overflow in libaom internal function img_alloc_helper can lead to heap buffer overflow. This function can be reached via 3 callers: * Ca…

Fix: after 3.9.0
Fix from $2,300 2024-06-05
Aomedia HIGH 7.5
CVE-2023-39616

AOMedia v3.0.0 to v3.5.0 was discovered to contain an invalid read memory access via the component assign_frame_buffer_p in av1/common/av1_common_int…

Fix: after 3.5.0
Fix from $1,950 2023-08-29
Aomedia HIGH 8.8
CVE-2020-36129

AOM v2.0.1 was discovered to contain a stack buffer overflow via the component src/aom_image.c.

No fix yet
Fix from $1,950 2021-12-02
Aomedia HIGH 8.8
CVE-2020-36131

AOM v2.0.1 was discovered to contain a stack buffer overflow via the component stats/rate_hist.c.

No fix yet
Fix from $1,950 2021-12-02
Aomedia HIGH 8.8
CVE-2020-36133

AOM v2.0.1 was discovered to contain a global buffer overflow via the component av1/encoder/partition_search.h.

No fix yet
Fix from $1,950 2021-12-02
Aomedia MEDIUM 6.5
CVE-2020-36130

AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component av1/av1_dx_iface.c.

No fix yet
Fix from $1,600 2021-12-02
Aomedia MEDIUM 6.5
CVE-2020-36134

AOM v2.0.1 was discovered to contain a segmentation violation via the component aom_dsp/x86/obmc_sad_avx2.c.

No fix yet
Fix from $1,600 2021-12-02
Aomedia MEDIUM 6.5
CVE-2020-36135

AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component rate_hist.c.

No fix yet
Fix from $1,600 2021-12-02
Libavif HIGH 8.8
CVE-2020-36407

libavif 0.8.0 and 0.8.1 has an out-of-bounds write in avifDecoderDataFillImageGrid.

Patch available
Fix from $1,950 2021-07-01
Aomedia CRITICAL 9.8
CVE-2021-30474

aom_dsp/grain_table.c in libaom in AOMedia before 2021-03-30 has a use-after-free.

Fix: 2021-03-30+
Fix from $2,300 2021-06-02