Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-24754


libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the ff_hevc_put_weighted_pred_avg_8_sse function at sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input file.


Published

2023-03-01T15:15:11.510

Last Modified

2025-03-07T21:15:16.037

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.5 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-476
  • Type: Secondary
    CWE-476

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application struktur libde265 1.0.10 Yes
Operating System debian debian_linux 10.0 Yes

References