📦 Libwebp

by Webmproject

🔍 What is Libwebp?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2018-25009

CRITICAL CVSS 9.1 May 21, 2021

A heap-based buffer overflow vulnerability in libwebp's GetLE16() function allows attackers to execute arbitrary code or cause denial of service. This affects any application that processes WebP image...

CVE-2018-25011

CRITICAL CVSS 9.8 May 21, 2021

A heap-based buffer overflow vulnerability in libwebp's PutLE16() function allows attackers to execute arbitrary code or cause denial of service. This affects any application that processes WebP image...

CVE-2018-25012

CRITICAL CVSS 9.1 May 21, 2021

A heap-based buffer overflow vulnerability in libwebp's GetLE24() function allows attackers to execute arbitrary code or cause denial of service by processing malicious WebP images. This affects any a...

CVE-2018-25014

CRITICAL CVSS 9.8 May 21, 2021

CVE-2018-25014 is a use-after-free vulnerability in libwebp's ReadSymbol() function that allows attackers to execute arbitrary code or cause denial of service. This affects any application using libwe...

CVE-2020-36329

CRITICAL CVSS 9.8 May 21, 2021

CVE-2020-36329 is a use-after-free vulnerability in libwebp that allows attackers to execute arbitrary code or cause denial of service. This affects any application using vulnerable versions of libweb...

CVE-2020-36330

CRITICAL CVSS 9.1 May 21, 2021

CVE-2020-36330 is an out-of-bounds read vulnerability in libwebp versions before 1.0.1, allowing attackers to read sensitive memory data or cause denial-of-service. It affects systems using libwebp fo...

CVE-2020-36332

HIGH CVSS 7.5 May 21, 2021

CVE-2020-36332 is a memory exhaustion vulnerability in libwebp library versions before 1.0.1. When processing specially crafted WebP images, libwebp allocates excessive memory, potentially causing den...