VYPR

Libaom

by Libaom

CVEs (4)

  • CVE-2024-5171CriJun 5, 2024
    risk 0.64cvss 9.8epss 0.01

    Integer overflow in libaom internal function img_alloc_helper can lead to heap buffer overflow. This function can be reached via 3 callers: * Calling aom_img_alloc() with a large value of the d_w, d_h, or align parameter may result in integer overflows in the calculations…

  • CVE-2023-6879CriDec 27, 2023
    risk 0.59cvss 9.0epss 0.01

    Increasing the resolution of video frames, while performing a multi-threaded encode, can result in a heap overflow in av1_loop_restoration_dealloc().

  • CVE-2026-56208HigJun 19, 2026
    risk 0.49cvss 7.6epss 0.00

    A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation. A flaw in the AV1 encoder's Look-Ahead Processing (LAP) mode causes the first-pass stats ring buffer wrap-around guard to be bypassed when g_lag_in_frames is set to 1 or higher.…

  • CVE-2026-56210HigJun 19, 2026
    risk 0.46cvss 7.1epss 0.00

    A heap-buffer-overflow read vulnerability was found in libaom, the reference AV1 codec implementation. A missing bounds check in the SVC (Scalable Video Coding) layer ID control function allows setting a spatial_layer_id exceeding the configured number of layers. This causes an…