libbpg project records
10 published records for vendor libbpg project.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 2
- With a fix record
- 10%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-125 Out-of-bounds Read2
- CWE-190 Integer Overflow or Wraparound2
- CWE-191 Integer Underflow (Wrap or Wraparound)1
- CWE-476 NULL Pointer Dereference1
- CWE-787 Out-of-bounds Write1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
10 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
36Monitor | CVE-2018-12447No exploit | The restore_tqb_pixels function in hevc_filter.c in libavcodec, as used in libbpg 0.9.8 and other products, has an integer overflow that lealibbpg project · libbpg · CWE-190 | High8.8 | — | 3.8% | Jun 15, 2018 |
36Monitor | CVE-2016-5637No exploit | The restore_tqb_pixels function in libbpg 0.9.5 through 0.9.7 mishandles the transquant_bypass_enable_flag value, which allows remote attacklibbpg project · libbpg · CWE-119 | High8.8 | — | 2.9% | Jul 15, 2016 |
35Monitor | CVE-2017-14734No exploit | The build_msps function in libbpg.c in libbpg 0.9.7 allows remote attackers to cause a denial of service (heap-based buffer overflow and applibbpg project · libbpg · CWE-119 | High8.8 | — | 1.6% | Sep 25, 2017 |
35Monitor | CVE-2017-14796No exploit | The hevc_write_frame function in libbpg.c in libbpg 0.9.7 allows remote attackers to cause a denial of service (integer underflow and appliclibbpg project · libbpg · CWE-191 | High8.8 | — | 1.5% | Sep 27, 2017 |
35Monitor | CVE-2017-14034No exploit | The restore_tqb_pixels function in hevc_filter.c in libavcodec, as used in libbpg 0.9.7 and other products, miscalculates a memcpy destinatilibbpg project · libbpg · CWE-125 | High8.8 | — | 1.5% | Nov 16, 2017 |
35Monitor | CVE-2017-14795No exploit | The hevc_write_frame function in libbpg.c in libbpg 0.9.7 allows remote attackers to cause a denial of service (out-of-bounds read and applilibbpg project · libbpg · CWE-125 | High8.8 | — | 1.3% | Sep 27, 2017 |
35Monitor | CVE-2017-13136No exploit | The image_alloc function in bpgenc.c in libbpg 0.9.7 has an integer overflow, with a resultant invalid malloc and NULL pointer dereference.libbpg project · libbpg · CWE-190 | High8.8 | — | 1.3% | Nov 16, 2017 |
32Monitor | CVE-2016-8710No exploit | An exploitable heap write out of bounds vulnerability exists in the decoding of BPG images in Libbpg library.libbpg project · libbpg · CWE-787 | High7.8 | — | 3.4% | Jan 26, 2017 |
31Monitor | CVE-2017-13135No exploit | A NULL Pointer Dereference exists in VideoLAN x265, as used in libbpg 0.9.7 and other products, because the CUData::initialize function in clibbpg project · libbpg · CWE-476 | High7.8 | — | 1.2% | Nov 16, 2017 |
26Monitor | CVE-2017-2575No exploit | A vulnerability was found while fuzzing libbpg 0.9.7.libbpg project · libbpg · CWE-119 | Medium6.5 | — | 1.5% | Aug 22, 2018 |
- CVE-2018-1244736Monitor
The restore_tqb_pixels function in hevc_filter.c in libavcodec, as used in libbpg 0.9.8 and other products, has an integer overflow that lea
HighCVSS 8.8No exploitEPSS 4%libbpg project · libbpgJun 15, 2018
- CVE-2016-563736Monitor
The restore_tqb_pixels function in libbpg 0.9.5 through 0.9.7 mishandles the transquant_bypass_enable_flag value, which allows remote attack
HighCVSS 8.8No exploitEPSS 3%libbpg project · libbpgJul 15, 2016
- CVE-2017-1473435Monitor
The build_msps function in libbpg.c in libbpg 0.9.7 allows remote attackers to cause a denial of service (heap-based buffer overflow and app
HighCVSS 8.8No exploitEPSS 2%libbpg project · libbpgSep 25, 2017
- CVE-2017-1479635Monitor
The hevc_write_frame function in libbpg.c in libbpg 0.9.7 allows remote attackers to cause a denial of service (integer underflow and applic
HighCVSS 8.8No exploitEPSS 2%libbpg project · libbpgSep 27, 2017
- CVE-2017-1403435Monitor
The restore_tqb_pixels function in hevc_filter.c in libavcodec, as used in libbpg 0.9.7 and other products, miscalculates a memcpy destinati
HighCVSS 8.8No exploitEPSS 2%libbpg project · libbpgNov 16, 2017
- CVE-2017-1479535Monitor
The hevc_write_frame function in libbpg.c in libbpg 0.9.7 allows remote attackers to cause a denial of service (out-of-bounds read and appli
HighCVSS 8.8No exploitEPSS 1%libbpg project · libbpgSep 27, 2017
- CVE-2017-1313635Monitor
The image_alloc function in bpgenc.c in libbpg 0.9.7 has an integer overflow, with a resultant invalid malloc and NULL pointer dereference.
HighCVSS 8.8No exploitEPSS 1%libbpg project · libbpgNov 16, 2017
- CVE-2016-871032Monitor
An exploitable heap write out of bounds vulnerability exists in the decoding of BPG images in Libbpg library.
HighCVSS 7.8No exploitEPSS 3%libbpg project · libbpgJan 26, 2017
- CVE-2017-1313531Monitor
A NULL Pointer Dereference exists in VideoLAN x265, as used in libbpg 0.9.7 and other products, because the CUData::initialize function in c
HighCVSS 7.8No exploitEPSS 1%libbpg project · libbpgNov 16, 2017
- CVE-2017-257526Monitor
A vulnerability was found while fuzzing libbpg 0.9.7.
MediumCVSS 6.5No exploitEPSS 1%libbpg project · libbpgAug 22, 2018