CVE-2023-27103
https://notcve.org/view.php?id=CVE-2023-27103
Libde265 v1.0.11 was discovered to contain a heap buffer overflow via the function derive_collocated_motion_vectors at motion.cc. • https://github.com/strukturag/libde265/issues/394 https://lists.debian.org/debian-lts-announce/2023/11/msg00032.html • CWE-787: Out-of-bounds Write •
CVE-2023-27102
https://notcve.org/view.php?id=CVE-2023-27102
Libde265 v1.0.11 was discovered to contain a segmentation violation via the function decoder_context::process_slice_segment_header at decctx.cc. • https://github.com/strukturag/libde265/issues/393 https://lists.debian.org/debian-lts-announce/2023/11/msg00032.html • CWE-476: NULL Pointer Dereference •
CVE-2022-47664
https://notcve.org/view.php?id=CVE-2022-47664
Libde265 1.0.9 is vulnerable to Buffer Overflow in ff_hevc_put_hevc_qpel_pixels_8_sse • https://github.com/strukturag/libde265/issues/368 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •
CVE-2022-47665
https://notcve.org/view.php?id=CVE-2022-47665
Libde265 1.0.9 has a heap buffer overflow vulnerability in de265_image::set_SliceAddrRS(int, int, int) • https://github.com/strukturag/libde265/issues/369 • CWE-787: Out-of-bounds Write •
CVE-2023-24758
https://notcve.org/view.php?id=CVE-2023-24758
libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the ff_hevc_put_weighted_pred_avg_8_sse function at sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input file. • https://github.com/strukturag/libde265/issues/383 https://lists.debian.org/debian-lts-announce/2023/03/msg00004.html • CWE-476: NULL Pointer Dereference •