CVE-2021-30474Use After Free in Aomedia

CWE-416Use After Free6 documents5 sources
Severity
9.8CRITICALNVD
OSV6.5
EPSS
0.2%
top 61.82%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 2
Latest updateOct 23

Description

aom_dsp/grain_table.c in libaom in AOMedia before 2021-03-30 has a use-after-free.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages2 packages

NVDaomedia/aomedia< 2021-03-30
debiandebian/aom< aom 3.2.0-1 (bookworm)

Patches

🔴Vulnerability Details

3
OSV
aom vulnerabilities2023-10-23
GHSA
GHSA-5r4m-4q9j-5jhh: aom_dsp/grain_table2022-05-24
OSV
CVE-2021-30474: aom_dsp/grain_table2021-06-02

📋Vendor Advisories

2
Ubuntu
AOM vulnerabilities2023-10-23
Debian
CVE-2021-30474: aom - aom_dsp/grain_table.c in libaom in AOMedia before 2021-03-30 has a use-after-fre...2021
CVE-2021-30474 — Use After Free in Aomedia | cvebase