Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2026-45383— libde265 has a heap buffer overflow (OOB read) in decode_slice_unit_WPP() via out-of-bounds CtbAddrRStoTS access — libde265 <= v1.0.18

Quick assessment

Affected
strukturag libde265
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

strukturag libde265是strukturag公司的一个处理HEVC视频编码的库。 strukturag libde265 1.0.19之前版本存在缓冲区错误漏洞,该漏洞源于在 函数中存在堆缓冲区溢出(越界读取),当PPS/SPS头部被特制时可能导致堆缓冲区溢出。

AI Predicted 7.5 Difficulty: Easy EPSS 0.43% · P35

Possible ATT&CK Techniques 1 AI

T1190 · Exploit Public-Facing Application

Affected Version Matrix 1

VendorProduct Version RangeStatus
strukturag libde265 < 1.0.19 affected
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2026-45383

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
libde265 has a heap buffer overflow (OOB read) in decode_slice_unit_WPP() via out-of-bounds CtbAddrRStoTS access — libde265 <= v1.0.18
Source: CVE Program / CVE List V5
Vulnerability Description
libde265 is an open source implementation of the h.265 video codec. Versions prior to 1.0.19 have a heap buffer overflow (out-of-bounds READ) exists in `decoder_context::decode_slice_unit_WPP()` in `libde265/decctx.cc`. When decoding a WPP (Wavefront Parallel Processing) HEVC slice, `ctbAddrRS` is computed as `ctbRow * ctbsWidth` inside the entry-point loop. If the PPS/SPS headers are crafted so that this value exceeds `pps.CtbAddrRStoTS.size()`, the subsequent array access `pps.CtbAddrRStoTS[ctbAddrRS]` reads past the end of the allocated vector, triggering a heap-buffer-overflow confirmed by AddressSanitizer. Version 1.0.19 patches the issue.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N
Source: CVE Program / CVE List V5
Vulnerability Type
跨界内存读
Source: CVE Program / CVE List V5
Vulnerability Title
strukturag libde265 缓冲区错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
strukturag libde265是strukturag公司的一个处理HEVC视频编码的库。 strukturag libde265 1.0.19之前版本存在缓冲区错误漏洞,该漏洞源于在`decoder_context::decode_slice_unit_WPP()`函数中存在堆缓冲区溢出(越界读取),当PPS/SPS头部被特制时可能导致堆缓冲区溢出。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
strukturag libde265 < 1.0.19 -

II. Public POCs for CVE-2026-45383

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-45383

请登录查看更多情报信息。

Vendor Advisories for CVE-2026-45383 (1)

Same Patch Batch · strukturag · 2026-07-21 · 8 CVEs total

CVE-2026-47247 7.5 HIGH libheif Vulnerable to Heap Information Disclosure via Grid Image Gap + Uninitialized Pixel
CVE-2026-45382 6.9 MEDIUM libde265 has a heap-buffer-overflow READ in decode_slice_unit_tiles via unvalidated PPS ti
CVE-2026-47178 6.1 MEDIUM libheif has Heap Out Of Bounds Write in unci subsystem
CVE-2026-47254 6.1 MEDIUM libheif Has Heap Buffer Overflow in `Track::get_next_sample_raw_data()` -- OOB Chunk Vecto
CVE-2026-47714 6.1 MEDIUM libheif has integer overflow in inline mask size calculation that causes undersized buffer
CVE-2026-47709 libheif has a NULL pointer dereference in heif_image_handle_get_image_tiling for malformed
CVE-2026-47251 libheif has an incomplete fix for CVE-2026-3949: integer overflow bypass in vvdec_push_dat

IV. Related Vulnerabilities

V. Comments for CVE-2026-45383

No comments yet


Leave a comment