Videolan Dav1D vulnerabilities
2 known vulnerabilities affecting videolan/dav1d.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2024-1580HIGHCVSS 8.8fixed in 1.4.02024-02-19
CVE-2024-1580 [HIGH] CWE-190 CVE-2024-1580: An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size.
An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. This can lead to memory corruption within the AV1 decoder. We recommend upgrading past version 1.4.0 of dav1d.
cvelistv5nvdosv
CVE-2023-32570MEDIUMCVSS 5.9fixed in 1.2.02023-05-10
CVE-2023-32570 [MEDIUM] CWE-362 CVE-2023-32570: VideoLAN dav1d before 1.2.0 has a thread_task.c race condition that can lead to an application crash
VideoLAN dav1d before 1.2.0 has a thread_task.c race condition that can lead to an application crash, related to dav1d_decode_frame_exit.
nvdosv