📦 Libde265

by Struktur

🔍 What is Libde265?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2022-1253

CRITICAL CVSS 9.8 Apr 6, 2022

CVE-2022-1253 is a heap-based buffer overflow vulnerability in libde265, an open-source H.265/HEVC video codec implementation. This vulnerability allows attackers to execute arbitrary code or cause de...

CVE-2023-43887

HIGH CVSS 8.1 Nov 22, 2023

CVE-2023-43887 is a buffer overflow vulnerability in Libde265 v1.0.12's pic_parameter_set::dump function, triggered by malicious num_tile_columns and num_tile_row parameters. This allows attackers to ...

CVE-2023-27103

HIGH CVSS 8.8 Mar 15, 2023

CVE-2023-27103 is a heap buffer overflow vulnerability in Libde265 v1.0.11's derive_collocated_motion_vectors function that allows attackers to execute arbitrary code or cause denial of service. This ...

CVE-2022-47664

HIGH CVSS 7.8 Mar 3, 2023

CVE-2022-47664 is a buffer overflow vulnerability in Libde265's HEVC video decoding function that could allow attackers to execute arbitrary code or cause denial of service. This affects any applicati...

CVE-2023-25221

HIGH CVSS 7.8 Mar 1, 2023

This vulnerability is a heap buffer overflow in libde265's motion.cc component, allowing attackers to execute arbitrary code or cause denial of service by processing specially crafted HEVC/H.265 video...

CVE-2021-36409

HIGH CVSS 7.8 Jan 10, 2022

CVE-2021-36409 is a vulnerability in libde265 v1.0.8 where a failed assertion during video file decoding causes a denial of service. Attackers can crash applications using this library by providing a ...

CVE-2020-21598

HIGH CVSS 8.8 Sep 16, 2021

CVE-2020-21598 is a heap buffer overflow vulnerability in libde265 v1.0.4's ff_hevc_put_unweighted_pred_8_sse function that allows remote code execution via a specially crafted HEVC video file. This a...

CVE-2024-38950

MEDIUM CVSS 6.5 Jun 26, 2024

CVE-2024-38950 is a heap buffer overflow vulnerability in Libde265 v1.0.15 that allows attackers to crash applications via crafted payloads to the __interceptor_memcpy function. This affects any softw...