Libde265 v1.0.12 was discovered to contain multiple buffer overflows via the num_tile_columns and num_tile_row parameters in the function pic_parameter_set::dump.
References
Link | Resource |
---|---|
https://github.com/strukturag/libde265/commit/63b596c915977f038eafd7647d1db25488a8c133 | Patch |
https://github.com/strukturag/libde265/issues/418 | Exploit Issue Tracking Patch |
https://lists.debian.org/debian-lts-announce/2023/11/msg00032.html |
Configurations
History
No history.
Information
Published : 2023-11-22 18:15
Updated : 2023-11-30 19:15
NVD link : CVE-2023-43887
Mitre link : CVE-2023-43887
CVE.ORG link : CVE-2023-43887
JSON object : View
Products Affected
struktur
- libde265
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')