← Back

CVE-2024-1580

nvd nist
Published: Feb 19, 2024Modified: Feb 13, 2025

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. This can lead to memory corruption within the AV1 decoder. We recommend upgrading past version 1.4.0 of dav1d.

Affected (10)

1 product
Dav1d
5 products
Ipados
Iphone Os
Macos
Safari
Visionos
1 product
Fedora
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Before 1.4.0
Configuration B
8 vulnerable
Vulnerable SoftwareAffected Versions
Apple
Before 16.7.7
From 17.0 to 17.4.1
Apple
Before 16.7.7
From 17.0 to 17.4.1
Apple
From 13.0 to 13.6.6
From 14.0 to 14.4.1
Before 17.4.1
Before 1.1.1
Configuration C
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 40

References (30)

Source: cve-coordination@google.com
Mailing List
Source: cve-coordination@google.com
Mailing List
Source: cve-coordination@google.com
Mailing List
Source: cve-coordination@google.com
Mailing List
Source: cve-coordination@google.com
Mailing List
Source: cve-coordination@google.com
Mailing List
Source: cve-coordination@google.com
Release Notes
Source: cve-coordination@google.com
Release Notes
Source: cve-coordination@google.com
Third Party Advisory
Source: cve-coordination@google.com
Third Party Advisory
Source: cve-coordination@google.com
Third Party Advisory
Source: cve-coordination@google.com
Third Party Advisory
Source: cve-coordination@google.com
Third Party Advisory
Source: cve-coordination@google.com
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing List
Source: af854a3a-2127-422b-91ae-364da2661108
Release Notes
Source: af854a3a-2127-422b-91ae-364da2661108
Release Notes
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory

Timeline

No history available yet.