Skip to content
Noroxi

libbpg project records

10 published records for vendor libbpg project.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
10%
Median publish → KEV
No record has entered KEV

All records

10 records
  • The restore_tqb_pixels function in hevc_filter.c in libavcodec, as used in libbpg 0.9.8 and other products, has an integer overflow that lea

    HighCVSS 8.8No exploitEPSS 4%

    libbpg project · libbpgJun 15, 2018

  • CVE-2016-5637
    36Monitor

    The restore_tqb_pixels function in libbpg 0.9.5 through 0.9.7 mishandles the transquant_bypass_enable_flag value, which allows remote attack

    HighCVSS 8.8No exploitEPSS 3%

    libbpg project · libbpgJul 15, 2016

  • The build_msps function in libbpg.c in libbpg 0.9.7 allows remote attackers to cause a denial of service (heap-based buffer overflow and app

    HighCVSS 8.8No exploitEPSS 2%

    libbpg project · libbpgSep 25, 2017

  • The hevc_write_frame function in libbpg.c in libbpg 0.9.7 allows remote attackers to cause a denial of service (integer underflow and applic

    HighCVSS 8.8No exploitEPSS 2%

    libbpg project · libbpgSep 27, 2017

  • The restore_tqb_pixels function in hevc_filter.c in libavcodec, as used in libbpg 0.9.7 and other products, miscalculates a memcpy destinati

    HighCVSS 8.8No exploitEPSS 2%

    libbpg project · libbpgNov 16, 2017

  • The hevc_write_frame function in libbpg.c in libbpg 0.9.7 allows remote attackers to cause a denial of service (out-of-bounds read and appli

    HighCVSS 8.8No exploitEPSS 1%

    libbpg project · libbpgSep 27, 2017

  • The image_alloc function in bpgenc.c in libbpg 0.9.7 has an integer overflow, with a resultant invalid malloc and NULL pointer dereference.

    HighCVSS 8.8No exploitEPSS 1%

    libbpg project · libbpgNov 16, 2017

  • CVE-2016-8710
    32Monitor

    An exploitable heap write out of bounds vulnerability exists in the decoding of BPG images in Libbpg library.

    HighCVSS 7.8No exploitEPSS 3%

    libbpg project · libbpgJan 26, 2017

  • A NULL Pointer Dereference exists in VideoLAN x265, as used in libbpg 0.9.7 and other products, because the CUData::initialize function in c

    HighCVSS 7.8No exploitEPSS 1%

    libbpg project · libbpgNov 16, 2017

  • CVE-2017-2575
    26Monitor

    A vulnerability was found while fuzzing libbpg 0.9.7.

    MediumCVSS 6.5No exploitEPSS 1%

    libbpg project · libbpgAug 22, 2018