CVE-2024-1580
published 2024-02-19CVE-2024-1580: An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. This can lead to memory corruption within the AV1 decoder…
high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. This can lead to memory corruption within the AV1 decoder. We recommend upgrading past version 1.4.0 of dav1d.
Affected
21 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | ios_16.7.7_and_ipados | — | — |
| apple | ios_17.4.1_and_ipados | — | — |
| apple | ipados | < 16.7.7 | 16.7.7 |
| apple | ipados | >= 17.0 < 17.4.1 | 17.4.1 |
| apple | iphone_os | < 16.7.7 | 16.7.7 |
| apple | iphone_os | >= 17.0 < 17.4.1 | 17.4.1 |
| apple | macos | >= 13.0 < 13.6.6 | 13.6.6 |
| apple | macos | >= 14.0 < 14.4.1 | 14.4.1 |
| apple | macos_sonoma | — | — |
| apple | macos_ventura | — | — |
| apple | safari | < 17.4.1 | 17.4.1 |
| apple | safari | — | — |
| apple | visionos | < 1.1.1 | 1.1.1 |
| apple | visionos | — | — |
| debian | dav1d | < dav1d 1.0.0-2+deb12u1 (bookworm) | dav1d 1.0.0-2+deb12u1 (bookworm) |
| fedoraproject | fedora | — | — |
| videolan | dav1d | < 1.4.0 | 1.4.0 |
| videolan | dav1d | >= 0 < 0.7.1-3+deb11u1 | 0.7.1-3+deb11u1 |
| videolan | dav1d | >= 0 < 1.0.0-2+deb12u1 | 1.0.0-2+deb12u1 |
| videolan | dav1d | >= 0 < 1.4.0-1 | 1.4.0-1 |
| videolan | dav1d | >= 0 < 1.4.0-1 | 1.4.0-1 |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv8.8HIGH