VendorsStrukturlibde265all versions
Vulnerabilities

Struktur libde265

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

60CVEs
CVE-2022-1253
Heap-based Buffer Overflow in strukturag/libde265
Published 2022-04-06 · Modified
9.8EPSS 0.021
CVE-2020-21598
libde265 v1.0.4 contains a heap buffer overflow in the ff_hevc_put_unweighted_pred_8_sse function, which can be exploited via a crafted a file.
Published 2021-09-16 · Modified
8.8EPSS 0.018
CVE-2023-49468
Libde265 v1.0.14 was discovered to contain a global buffer overflow vulnerability in the read_coding_unit function at slice.cc.
Published 2023-12-07 · Modified
8.8EPSS 0.009
CVE-2023-27103
Libde265 v1.0.11 was discovered to contain a heap buffer overflow via the function derive_collocated_motion_vectors at motion.cc.
Published 2023-03-15 · Modified
8.8EPSS 0.009
CVE-2023-49465
Libde265 v1.0.14 was discovered to contain a heap-buffer-overflow vulnerability in the derive_spatial_luma_vector_prediction function at motion.cc.
Published 2023-12-07 · Modified
8.8EPSS 0.008
CVE-2023-49467
Libde265 v1.0.14 was discovered to contain a heap-buffer-overflow vulnerability in the derive_combined_bipredictive_merging_candidates function at motion.cc.
Published 2023-12-07 · Modified
8.8EPSS 0.008
CVE-2026-33164
NULL Pointer Dereference in libde265
Published 2026-03-20 · Analyzed
8.7EPSS 0.005
CVE-2023-43887
Libde265 v1.0.12 was discovered to contain multiple buffer overflows via the num_tile_columns and num_tile_row parameters in the function pic_parameter_set::dump.
Published 2023-11-22 · Modified
8.1EPSS 0.010
CVE-2021-36409
There is an Assertion `scaling_list_pred_matrix_id_delta==1' failed at sps.cc:925 in libde265 v1.0.8 when decoding file, which allows attackers to cause a Denial of Service (DoS) by running the application with a crafted file or possibly have unspecified other impact.
Published 2022-01-10 · Modified
7.8EPSS 0.009
CVE-2022-47655
Libde265 1.0.9 is vulnerable to Buffer Overflow in function void put_qpel_fallback<unsigned short>
Published 2023-01-05 · Modified
7.8EPSS 0.004
CVE-2023-25221
Libde265 v1.0.10 was discovered to contain a heap-buffer-overflow vulnerability in the derive_spatial_luma_vector_prediction function in motion.cc.
Published 2023-03-01 · Modified
7.8EPSS 0.003
CVE-2022-47665
Libde265 1.0.9 has a heap buffer overflow vulnerability in de265_image::set_SliceAddrRS(int, int, int)
Published 2023-03-03 · Modified
7.8EPSS 0.003
CVE-2022-47664
Libde265 1.0.9 is vulnerable to Buffer Overflow in ff_hevc_put_hevc_qpel_pixels_8_sse
Published 2023-03-03 · Modified
7.8EPSS 0.003
CVE-2026-49295
libde265 has an out-of-bounds write in process_reference_picture_set via predicted short-term RPS
Published 2026-06-19 · Analyzed
7.1EPSS 0.003
CVE-2026-49346
libde265 has a heap buffer overflow in de265_image_get_buffer via SPS dimension integer overflow
Published 2026-06-19 · Analyzed
7.1EPSS 0.003
CVE-2020-21597
libde265 v1.0.4 contains a heap buffer overflow in the mc_chroma function, which can be exploited via a crafted a file.
Published 2021-09-16 · Modified
6.5EPSS 0.015
CVE-2020-21596
libde265 v1.0.4 contains a global buffer overflow in the decode_CABAC_bit function, which can be exploited via a crafted a file.
Published 2021-09-16 · Modified
6.5EPSS 0.015
CVE-2020-21602
libde265 v1.0.4 contains a heap buffer overflow in the put_weighted_bipred_16_fallback function, which can be exploited via a crafted a file.
Published 2021-09-16 · Modified
6.5EPSS 0.014
CVE-2020-21599
libde265 v1.0.4 contains a heap buffer overflow in the de265_image::available_zscan function, which can be exploited via a crafted a file.
Published 2021-09-16 · Modified
6.5EPSS 0.014
CVE-2020-21600
libde265 v1.0.4 contains a heap buffer overflow in the put_weighted_pred_avg_16_fallback function, which can be exploited via a crafted a file.
Published 2021-09-16 · Modified
6.5EPSS 0.014
CVE-2021-35452
An Incorrect Access Control vulnerability exists in libde265 v1.0.8 due to a SEGV in slice.cc.
Published 2022-01-10 · Modified
6.5EPSS 0.013
CVE-2020-21594
libde265 v1.0.4 contains a heap buffer overflow in the put_epel_hv_fallback function, which can be exploited via a crafted a file.
Published 2021-09-16 · Modified
6.5EPSS 0.012
CVE-2020-21606
libde265 v1.0.4 contains a heap buffer overflow fault in the put_epel_16_fallback function, which can be exploited via a crafted a file.
Published 2021-09-16 · Modified
6.5EPSS 0.011
CVE-2020-21595
libde265 v1.0.4 contains a heap buffer overflow in the mc_luma function, which can be exploited via a crafted a file.
Published 2021-09-16 · Modified
6.5EPSS 0.011
CVE-2020-21601
libde265 v1.0.4 contains a stack buffer overflow in the put_qpel_fallback function, which can be exploited via a crafted a file.
Published 2021-09-16 · Modified
6.5EPSS 0.011
CVE-2020-21603
libde265 v1.0.4 contains a heap buffer overflow in the put_qpel_0_0_fallback_16 function, which can be exploited via a crafted a file.
Published 2021-09-16 · Modified
6.5EPSS 0.011
CVE-2020-21604
libde265 v1.0.4 contains a heap buffer overflow fault in the _mm_loadl_epi64 function, which can be exploited via a crafted a file.
Published 2021-09-16 · Modified
6.5EPSS 0.011
CVE-2020-21605
libde265 v1.0.4 contains a segmentation fault in the apply_sao_internal function, which can be exploited via a crafted a file.
Published 2021-09-16 · Modified
6.5EPSS 0.010
CVE-2022-43236
Libde265 v1.0.8 was discovered to contain a stack-buffer-overflow vulnerability via put_qpel_fallback<unsigned short> in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.
Published 2022-11-02 · Modified
6.5EPSS 0.009
CVE-2022-43238
Libde265 v1.0.8 was discovered to contain an unknown crash via ff_hevc_put_hevc_qpel_h_3_v_3_sse in sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.
Published 2022-11-02 · Modified
6.5EPSS 0.009
CVE-2022-43237
Libde265 v1.0.8 was discovered to contain a stack-buffer-overflow vulnerability via void put_epel_hv_fallback<unsigned short> in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.
Published 2022-11-02 · Modified
6.5EPSS 0.009
CVE-2022-43242
Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via mc_luma<unsigned char> in motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.
Published 2022-11-02 · Modified
6.5EPSS 0.009
CVE-2022-43244
Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_qpel_fallback<unsigned short> in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.
Published 2022-11-02 · Modified
6.5EPSS 0.009
CVE-2022-43241
Libde265 v1.0.8 was discovered to contain an unknown crash via ff_hevc_put_hevc_qpel_v_3_8_sse in sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.
Published 2022-11-02 · Modified
6.5EPSS 0.009
CVE-2022-43243
Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_weighted_pred_avg_8_sse in sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.
Published 2022-11-02 · Modified
6.5EPSS 0.009
CVE-2022-43239
Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via mc_chroma<unsigned short> in motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.
Published 2022-11-02 · Modified
6.5EPSS 0.009
CVE-2022-43250
Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_qpel_0_0_fallback_16 in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.
Published 2022-11-02 · Modified
6.5EPSS 0.009
CVE-2022-43248
Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_weighted_pred_avg_16_fallback in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.
Published 2022-11-02 · Modified
6.5EPSS 0.009
CVE-2022-43240
Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via ff_hevc_put_hevc_qpel_h_2_v_1_sse in sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.
Published 2022-11-02 · Modified
6.5EPSS 0.009
CVE-2022-43253
Libde265 v1.0.8 was discovered to contain a heap-buffer-overflow vulnerability via put_unweighted_pred_16_fallback in fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted video file.
Published 2022-11-02 · Modified
6.5EPSS 0.009
1 / 2Next →