Search CVE reports
11 – 17 of 17 results
Some fixes available 1 of 3
AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component av1/av1_dx_iface.c.
1 affected package
aom
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| aom | — | — | Not affected | Fixed | — |
AOM v2.0.1 was discovered to contain a stack buffer overflow via the component src/aom_image.c.
1 affected package
aom
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| aom | Not affected | Not affected | Not affected | Vulnerable | — |
Some fixes available 1 of 5
aom_dsp/noise_model.c in libaom in AOMedia before 2021-03-24 has a buffer overflow.
1 affected package
aom
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| aom | — | Not affected | Not affected | Fixed | Not in release |
Some fixes available 1 of 5
aom_dsp/grain_table.c in libaom in AOMedia before 2021-03-30 has a use-after-free.
1 affected package
aom
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| aom | — | Not affected | Not affected | Fixed | Not in release |
Some fixes available 1 of 5
aom_image.c in libaom in AOMedia before 2021-04-07 frees memory that is not located on the heap.
1 affected package
aom
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| aom | — | Not affected | Not affected | Fixed | Not in release |
Not in release
In extend_frame_lowbd of restoration.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is...
1 affected package
libaom
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| libaom | — | — | — | Not in release | Not in release |
Some fixes available 7 of 44
In ParseContentEncodingEntry of mkvparser.cc, there is a possible double free due to a missing reset of a freed pointer. This could lead to remote code execution with no additional execution privileges needed. User interaction is...
7 affected packages
qtwebengine-opensource-src, godot, aom, chromium-browser, firefox...
| Package | 26.04 LTS | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|---|
| qtwebengine-opensource-src | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation | Needs evaluation |
| godot | Not in release | Fixed | Fixed | Fixed | Not in release |
| aom | Not affected | Not affected | Needs evaluation | Needs evaluation | Not in release |
| chromium-browser | Not affected | Not affected | Not affected | Not in release | Not affected |
| firefox | Not affected | Not affected | Not affected | Not in release | Not affected |
| libvpx | Not affected | Not affected | Not affected | Not affected | Fixed |
| thunderbird | Not affected | Not affected | Not affected | Not in release | Not affected |