Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2624▼ 224 respecto a la semana anterior
Críticas / altas1373▲ 143 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)81▼ 449 respecto a la semana anterior
19 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Pendiente de análisis | Alta (7.1) | 0.88% | — | Aomedia LibaomAI | 19/6/2026 | 2/10/2026 | A remote code execution vulnerability was found in libaom, the reference AV1 codec implementation. Insufficient bounds validation in the AV1 encoder's SVC (Scalable Video Coding) layer ID control allows an attacker to supply crafted video frame pixels that overlap with internal encoder layer context structures. In… | |
| Pendiente de análisis | Alta (7.1) | 0.58% | — | Aomedia LibaomAI | 19/6/2026 | 2/10/2026 | A heap-buffer-overflow read vulnerability was found in libaom, the reference AV1 codec implementation. A missing bounds check in the SVC (Scalable Video Coding) layer ID control function allows setting a spatial_layer_id exceeding the configured number of layers. This causes an out-of-bounds heap read of approximately… | |
| Pendiente de análisis | Alta (7.1) | 0.64% | — | Aomedia LibaomAI | 19/6/2026 | 2/10/2026 | An arbitrary address write vulnerability was found in libaom, the reference AV1 codec implementation. A missing bounds check in the SVC (Scalable Video Coding) layer ID control function allows an attacker to inject an arbitrary pointer into the cyclic refresh map field via crafted image pixel values. The encoder then… | |
| Pendiente de análisis | Alta (7.6) | 0.42% | — | Aomedia LibaomAI | 19/6/2026 | 2/10/2026 | A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation. A flaw in the AV1 encoder's Look-Ahead Processing (LAP) mode causes the first-pass stats ring buffer wrap-around guard to be bypassed when g_lag_in_frames is set to 1 or higher. This results in a 232-byte out-of-bounds… | |
| Modificada | Media (6.5) | 0.32% | — | Aomedia Libavif | 16/5/2025 | 17/6/2026 | In libavif before 1.3.0, avifImageRGBToYUV in reformat.c has integer overflows in multiplications involving rgbRowBytes, yRowBytes, uRowBytes, and vRowBytes. | |
| Modificada | Crítica (9.1) | 0.36% | — | Aomedia Libavif | 16/5/2025 | 17/6/2026 | In libavif before 1.3.0, makeRoom in stream.c has an integer overflow and resultant buffer overflow in stream->offset+size. | |
| Modificada | Crítica (10) | 1.3% | — | Aomedia Libaom | 5/6/2024 | 17/6/2026 | Integer overflow in libaom internal function img_alloc_helper can lead to heap buffer overflow. This function can be reached via 3 callers: | |
| Modificada | Crítica (9.8) | 1.2% | — | AomediaFedoraproject Fedora | 27/12/2023 | 23/6/2026 | Increasing the resolution of video frames, while performing a multi-threaded encode, can result in a heap overflow in av1_loop_restoration_dealloc(). | |
| Modificada | Alta (7.5) | 0.74% | — | Aomedia | 29/8/2023 | 17/6/2026 | AOMedia v3.0.0 to v3.5.0 was discovered to contain an invalid read memory access via the component assign_frame_buffer_p in av1/common/av1_common_int.h. | |
| Modificada | Media (6.5) | 1.5% | — | Aomedia | 2/12/2021 | 17/6/2026 | AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component rate_hist.c. | |
| Modificada | Media (6.5) | 1.2% | — | Aomedia | 2/12/2021 | 17/6/2026 | AOM v2.0.1 was discovered to contain a segmentation violation via the component aom_dsp/x86/obmc_sad_avx2.c. | |
| Modificada | Alta (8.8) | 1.8% | — | Aomedia | 2/12/2021 | 17/6/2026 | AOM v2.0.1 was discovered to contain a global buffer overflow via the component av1/encoder/partition_search.h. | |
| Modificada | Alta (8.8) | 1.8% | — | Aomedia | 2/12/2021 | 17/6/2026 | AOM v2.0.1 was discovered to contain a stack buffer overflow via the component stats/rate_hist.c. | |
| Modificada | Media (6.5) | 1.5% | — | Aomedia | 2/12/2021 | 17/6/2026 | AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component av1/av1_dx_iface.c. | |
| Modificada | Alta (8.8) | 1.5% | — | Aomedia | 2/12/2021 | 17/6/2026 | AOM v2.0.1 was discovered to contain a stack buffer overflow via the component src/aom_image.c. | |
| Modificada | Alta (8.8) | 1.4% | — | Aomedia Libavif | 1/7/2021 | 17/6/2026 | libavif 0.8.0 and 0.8.1 has an out-of-bounds write in avifDecoderDataFillImageGrid. | |
| Modificada | Crítica (9.8) | 2.2% | — | AomediaFedoraproject Fedora | 4/6/2021 | 17/6/2026 | aom_dsp/noise_model.c in libaom in AOMedia before 2021-03-24 has a buffer overflow. | |
| Modificada | Crítica (9.8) | 1.9% | — | Aomedia | 2/6/2021 | 17/6/2026 | aom_dsp/grain_table.c in libaom in AOMedia before 2021-03-30 has a use-after-free. | |
| Modificada | Crítica (9.8) | 2.1% | — | AomediaFedoraproject Fedora | 6/5/2021 | 17/6/2026 | aom_image.c in libaom in AOMedia before 2021-04-07 frees memory that is not located on the heap. |