漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Integer overflow in libvpx
Vulnerability Description
There exists interger overflows in libvpx in versions prior to 1.14.1. Calling vpx_img_alloc() with a large value of the d_w, d_h, or align parameter may result in integer overflows in the calculations of buffer sizes and offsets and some fields of the returned vpx_image_t struct may be invalid. Calling vpx_img_wrap() with a large value of the d_w, d_h, or stride_align parameter may result in integer overflows in the calculations of buffer sizes and offsets and some fields of the returned vpx_image_t struct may be invalid. We recommend upgrading to version 1.14.1 or beyond
CVSS Information
N/A
Vulnerability Type
整数溢出或超界折返
Vulnerability Title
libvpx 安全漏洞
Vulnerability Description
libvpx是一个库。 libvpx 1.14.1之前版本中存在安全漏洞,该漏洞源于使用较大的 d_w、d_h 或 align 参数值调用 vpx_img_alloc() 可能会导致缓冲区大小和偏移量的计算出现整数溢出,并且返回的 vpx_image_t 结构体的某些字段可能无效。
CVSS Information
N/A
Vulnerability Type
N/A