Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:39502
HistoryMar 03, 2023 - 10:34 a.m.

Heap Buffer Overflow

2023-03-0310:34:01
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
13
heap buffer overflow
libde265.so
motion.cc
vulnerability
application crash

EPSS

0.001

Percentile

29.5%

libde265.so is vulnerable to heap-based buffer overflow. The vulnerability exists due to a lack of validation the derive_spatial_luma_vector_prediction functions in motion.cc. which allows an attacker to parse a crafted file, causing an application crash.