Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2624▼ 224 respecto a la semana anterior
Críticas / altas1373▲ 143 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)81▼ 449 respecto a la semana anterior
–

19 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
Pendiente de análisisAlta (7.1)0.88%—Aomedia LibaomAI19/6/20262/10/2026
A remote code execution vulnerability was found in libaom, the reference AV1 codec implementation. Insufficient bounds validation in the AV1 encoder's SVC (Scalable Video Coding) layer ID control allows an attacker to supply crafted video frame pixels that overlap with internal encoder layer context structures. In…
Pendiente de análisisAlta (7.1)0.58%—Aomedia LibaomAI19/6/20262/10/2026
A heap-buffer-overflow read vulnerability was found in libaom, the reference AV1 codec implementation. A missing bounds check in the SVC (Scalable Video Coding) layer ID control function allows setting a spatial_layer_id exceeding the configured number of layers. This causes an out-of-bounds heap read of approximately…
Pendiente de análisisAlta (7.1)0.64%—Aomedia LibaomAI19/6/20262/10/2026
An arbitrary address write vulnerability was found in libaom, the reference AV1 codec implementation. A missing bounds check in the SVC (Scalable Video Coding) layer ID control function allows an attacker to inject an arbitrary pointer into the cyclic refresh map field via crafted image pixel values. The encoder then…
Pendiente de análisisAlta (7.6)0.42%—Aomedia LibaomAI19/6/20262/10/2026
A heap buffer overflow vulnerability was found in libaom, the reference AV1 codec implementation. A flaw in the AV1 encoder's Look-Ahead Processing (LAP) mode causes the first-pass stats ring buffer wrap-around guard to be bypassed when g_lag_in_frames is set to 1 or higher. This results in a 232-byte out-of-bounds…
ModificadaMedia (6.5)0.32%—Aomedia Libavif16/5/202517/6/2026
In libavif before 1.3.0, avifImageRGBToYUV in reformat.c has integer overflows in multiplications involving rgbRowBytes, yRowBytes, uRowBytes, and vRowBytes.
ModificadaCrítica (9.1)0.36%—Aomedia Libavif16/5/202517/6/2026
In libavif before 1.3.0, makeRoom in stream.c has an integer overflow and resultant buffer overflow in stream->offset+size.
ModificadaCrítica (10)1.3%—Aomedia Libaom5/6/202417/6/2026
Integer overflow in libaom internal function img_alloc_helper can lead to heap buffer overflow. This function can be reached via 3 callers:
ModificadaCrítica (9.8)1.2%—AomediaFedoraproject Fedora27/12/202323/6/2026
Increasing the resolution of video frames, while performing a multi-threaded encode, can result in a heap overflow in av1_loop_restoration_dealloc().
ModificadaAlta (7.5)0.74%—Aomedia29/8/202317/6/2026
AOMedia v3.0.0 to v3.5.0 was discovered to contain an invalid read memory access via the component assign_frame_buffer_p in av1/common/av1_common_int.h.
ModificadaMedia (6.5)1.5%—Aomedia2/12/202117/6/2026
AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component rate_hist.c.
ModificadaMedia (6.5)1.2%—Aomedia2/12/202117/6/2026
AOM v2.0.1 was discovered to contain a segmentation violation via the component aom_dsp/x86/obmc_sad_avx2.c.
ModificadaAlta (8.8)1.8%—Aomedia2/12/202117/6/2026
AOM v2.0.1 was discovered to contain a global buffer overflow via the component av1/encoder/partition_search.h.
ModificadaAlta (8.8)1.8%—Aomedia2/12/202117/6/2026
AOM v2.0.1 was discovered to contain a stack buffer overflow via the component stats/rate_hist.c.
ModificadaMedia (6.5)1.5%—Aomedia2/12/202117/6/2026
AOM v2.0.1 was discovered to contain a NULL pointer dereference via the component av1/av1_dx_iface.c.
ModificadaAlta (8.8)1.5%—Aomedia2/12/202117/6/2026
AOM v2.0.1 was discovered to contain a stack buffer overflow via the component src/aom_image.c.
ModificadaAlta (8.8)1.4%—Aomedia Libavif1/7/202117/6/2026
libavif 0.8.0 and 0.8.1 has an out-of-bounds write in avifDecoderDataFillImageGrid.
ModificadaCrítica (9.8)2.2%—AomediaFedoraproject Fedora4/6/202117/6/2026
aom_dsp/noise_model.c in libaom in AOMedia before 2021-03-24 has a buffer overflow.
ModificadaCrítica (9.8)1.9%—Aomedia2/6/202117/6/2026
aom_dsp/grain_table.c in libaom in AOMedia before 2021-03-30 has a use-after-free.
ModificadaCrítica (9.8)2.1%—AomediaFedoraproject Fedora6/5/202117/6/2026
aom_image.c in libaom in AOMedia before 2021-04-07 frees memory that is not located on the heap.