Medium severity5.9NVD Advisory· Published May 10, 2023· Updated Jun 17, 2026
CVE-2023-32570
CVE-2023-32570
Description
VideoLAN dav1d before 1.2.0 has a thread_task.c race condition that can lead to an application crash, related to dav1d_decode_frame_exit.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:*
- VideoLAN/dav1ddescription
- osv-coords3 versionspkg:rpm/opensuse/dav1d&distro=openSUSE%20Leap%2015.5pkg:rpm/suse/dav1d&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Desktop%20Applications%2015%20SP5pkg:rpm/suse/dav1d&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Package%20Hub%2015%20SP5
< 1.0.0-150500.3.3.1+ 2 more
- (no CPE)range: < 1.0.0-150500.3.3.1
- (no CPE)range: < 1.0.0-150500.3.3.1
- (no CPE)range: < 1.0.0-150500.3.3.1
Patches
Vulnerability mechanics
References
5- code.videolan.org/videolan/dav1d/-/commit/cf617fdae0b9bfabd27282854c8e81450d955efanvdPatch
- security.gentoo.org/glsa/202310-05nvdThird Party Advisory
- code.videolan.org/videolan/dav1d/-/tags/1.2.0nvdRelease Notes
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/3WGSO7UMOF4MVLQ5H6KIV7OG6ONS377B/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/LXZ6CUNJFDJLCFOZHY2TIGMCAEITLCRP/nvd
News mentions
0No linked articles in our index yet.