yocto ▾
›
scarthgap ▾
›
component
›
libtheora
Component Overview
Vulnerability Overview
Name
libtheora
Version
1.1.1
Type
library
Description
Theora Video Codec
Licenses
BSD-3-Clause
PURL
-
CPE
cpe:2.3:*:*:theora:1.1.1:*:*:*:*:*:*:*
Other Versions
#
Project
Branch
Version
yocto
kirkstone
1.1.1
yocto
master
1.2.0
Vulnerabilities
#
Name
Analysis
Description
CVE-2024-56431
Not Affected
oc_huff_tree_unpack in huffdec.c in libtheora in Theora through 1.0 7180717 has an invalid negative left shift. NOTE: this is disputed by third parties because there is no evidence of a security impact, e.g., an application would not crash.