Lucene search

K
redosRedosROS-20240422-06
HistoryApr 22, 2024 - 12:00 a.m.

ROS-20240422-06

2024-04-2200:00:00
redos.red-soft.ru
10
vulnerability
h.265
libde265
memory allocation
denial of service
unix
remote exploitation

CVSS3

3.3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

AI Score

7.1

Confidence

High

EPSS

0

Percentile

15.5%

A vulnerability in the h.265 Libde265 video codec implementation is related to the size of allocated memory exceeding the
the maximum supported size 0x100000000000000. Exploitation of the vulnerability could allow an attacker,
acting remotely, to cause a denial of service

OSVersionArchitecturePackageVersionFilename
redos7.3x86_64libde265< 1.0.14-1UNKNOWN

CVSS3

3.3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

AI Score

7.1

Confidence

High

EPSS

0

Percentile

15.5%