rpm package
suse/libavif&distro=SUSE Linux Enterprise Module for Basesystem 15 SP7
pkg:rpm/suse/libavif&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP7
Vulnerabilities (2)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2025-48175 | Med | 4.5 | < 1.3.0-150700.3.6.1 | 1.3.0-150700.3.6.1 | May 16, 2025 | In libavif before 1.3.0, avifImageRGBToYUV in reformat.c has integer overflows in multiplications involving rgbRowBytes, yRowBytes, uRowBytes, and vRowBytes. | |
| CVE-2025-48174 | Med | 4.5 | < 1.3.0-150700.3.6.1 | 1.3.0-150700.3.6.1 | May 16, 2025 | In libavif before 1.3.0, makeRoom in stream.c has an integer overflow and resultant buffer overflow in stream->offset+size. |
- affected < 1.3.0-150700.3.6.1fixed 1.3.0-150700.3.6.1
In libavif before 1.3.0, avifImageRGBToYUV in reformat.c has integer overflows in multiplications involving rgbRowBytes, yRowBytes, uRowBytes, and vRowBytes.
- affected < 1.3.0-150700.3.6.1fixed 1.3.0-150700.3.6.1
In libavif before 1.3.0, makeRoom in stream.c has an integer overflow and resultant buffer overflow in stream->offset+size.