← Back

Aomedia

aomedia

15 CVEs • 3 products

Products (3)

Click to collapse
Toggle
Aomedia
aomedia
Libavif
libavif
Libaom
libaom

CVEs (15)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Aomedia
1Libavif
Nov 3, 2025
May 16, 2025
N/A· v4
6.5 MEDIUM· v3
N/A· v2
In libavif before 1.3.0, avifImageRGBToYUV in reformat.c has integer overflows in multiplications involving rgbRowBytes, yRowBytes, uRowBytes, and vRowBytes.
1Aomedia
1Libavif
Nov 3, 2025
May 16, 2025
N/A· v4
9.1 CRITICAL· v3
N/A· v2
In libavif before 1.3.0, makeRoom in stream.c has an integer overflow and resultant buffer overflow in stream->offset+size.
1Aomedia
1Libaom
Nov 21, 2024
Jun 5, 2024
10.0 CRITICAL· v4
9.8 CRITICAL· v3
N/A· v2
Integer overflow in libaom internal function img_alloc_helper can lead to heap buffer overflow. This function can be reached via 3 callers: * Calling aom_img_alloc() with a large value of the d_w, d_h, or align para...Show more
Integer overflow in libaom internal function img_alloc_helper can lead to heap buffer overflow. This function can be reached via 3 callers: * Calling aom_img_alloc() with a large value of the d_w, d_h, or align parameter may result in integer overflows in the calculations of buffer sizes and offsets and some fields of the returned aom_image_t struct may be invalid. * Calling aom_img_wrap() with a large value of the d_w, d_h, or align parameter may result in integer overflows in the calculations of buffer sizes and offsets and some fields of the returned aom_image_t struct may be invalid. * Calling aom_img_alloc_with_border() with a large value of the d_w, d_h, align, size_align, or border parameter may result in integer overflows in the calculations of buffer sizes and offsets and some fields of the returned aom_image_t struct may be invalid.Show less
2Aomedia
Fedoraproject
2Aomedia
Fedora
Feb 13, 2025
Dec 27, 2023
N/A· v4
9.8 CRITICAL· v3
N/A· v2
Increasing the resolution of video frames, while performing a multi-threaded encode, can result in a heap overflow in av1_loop_restoration_dealloc().
1Aomedia
1Aomedia
Nov 21, 2024
Aug 29, 2023
N/A· v4
7.5 HIGH· v3
N/A· v2
AOMedia v3.0.0 to v3.5.0 was discovered to contain an invalid read memory access via the component assign_frame_buffer_p in av1/common/av1_common_int.h.
1Aomedia
1Aomedia
Nov 21, 2024
Dec 2, 2021
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component rate_hist.c.
1Aomedia
1Aomedia
Nov 21, 2024
Dec 2, 2021
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
AOM v2.0.1 was discovered to contain a segmentation violation via the component aom_dsp/x86/obmc_sad_avx2.c.
1Aomedia
1Aomedia
Nov 21, 2024
Dec 2, 2021
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
AOM v2.0.1 was discovered to contain a global buffer overflow via the component av1/encoder/partition_search.h.
1Aomedia
1Aomedia
Nov 21, 2024
Dec 2, 2021
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
AOM v2.0.1 was discovered to contain a stack buffer overflow via the component stats/rate_hist.c.
1Aomedia
1Aomedia
Nov 21, 2024
Dec 2, 2021
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component av1/av1_dx_iface.c.
1Aomedia
1Aomedia
Nov 21, 2024
Dec 2, 2021
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
AOM v2.0.1 was discovered to contain a stack buffer overflow via the component src/aom_image.c.
1Aomedia
1Libavif
Nov 21, 2024
Jul 1, 2021
N/A· v4
8.8 HIGH· v3
6.8 MEDIUM· v2
libavif 0.8.0 and 0.8.1 has an out-of-bounds write in avifDecoderDataFillImageGrid.
2Aomedia
Fedoraproject
2Aomedia
Fedora
Nov 21, 2024
Jun 4, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
aom_dsp/noise_model.c in libaom in AOMedia before 2021-03-24 has a buffer overflow.
1Aomedia
1Aomedia
Nov 21, 2024
Jun 2, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
aom_dsp/grain_table.c in libaom in AOMedia before 2021-03-30 has a use-after-free.
2Aomedia
Fedoraproject
2Aomedia
Fedora
Nov 21, 2024
May 6, 2021
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
aom_image.c in libaom in AOMedia before 2021-04-07 frees memory that is not located on the heap.