Logo
vulnerabilityCVE-2022-1253
Name
CVE-2022-1253
Source
NVD ( link)Debian ( link)
Description
Heap-based Buffer Overflow in GitHub repository strukturag/libde265 prior to and including 1.0.8. The fix is established in commit 8e89fe0e175d2870c39486fdd09250b230ec10b8 but does not yet belong to an official release.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
libde265
Patched

Vulnerability Ratings#


9.8
CVSSv31
7.4
other
7.5
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
1.1.1
Not Affected
buildroot
master
1.1.1
Not Affected
yocto
master
1.0.18
Not Affected
yocto
scarthgap
1.0.16
Not Affected

Resolved with patches#


libde265 (yocto:kirkstone)

#
Title
Author
Resolve
1
error on out-of-range cpb_cnt_minus1 (oss-fuzz issue 27590)
Dirk Farin <dirk.farin@gmail.com>
CVE-2022-1253