A heap overflow vulnerability exists in libvpx - Encoding a frame that has larger dimensions than the originally configured size with VP9 may result in a heap overflow in libvpx.
We recommend upgrading to version 1.13.1 or above
Metrics
Affected Vendors & Products
References
History
Tue, 22 Jul 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Webmproject
Webmproject libvpx |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:webmproject:libvpx:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Webmproject
Webmproject libvpx |
|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Wed, 28 Aug 2024 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat
Redhat enterprise Linux |
|
| CPEs | cpe:/a:redhat:enterprise_linux:8 | |
| Vendors & Products |
Redhat
Redhat enterprise Linux |
Status: PUBLISHED
Assigner: Google
Published: 2024-05-27T11:26:58.207Z
Updated: 2024-08-02T08:28:21.518Z
Reserved: 2023-11-28T01:49:37.568Z
Link: CVE-2023-6349
Updated: 2024-05-28T15:01:48.553Z
Status : Analyzed
Published: 2024-05-27T12:15:08.810
Modified: 2025-07-22T20:08:40.183
Link: CVE-2023-6349