An issue was discovered in the FFmpeg package, where vp3_decode_frame in libavcodec/vp3.c lacks check of the return value of av_malloc() and will cause a null pointer dereference, impacting availability.
The product dereferences a pointer that it expects to be valid but is NULL.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Debian_linux | Debian | 10.0 (including) | 10.0 (including) |
| Debian_linux | Debian | 11.0 (including) | 11.0 (including) |
| Fedora | Fedoraproject | 36 (including) | 36 (including) |
| Ffmpeg | Ubuntu | bionic | * |
| Ffmpeg | Ubuntu | esm-apps/bionic | * |
| Ffmpeg | Ubuntu | esm-apps/focal | * |
| Ffmpeg | Ubuntu | esm-apps/jammy | * |
| Ffmpeg | Ubuntu | esm-apps/xenial | * |
| Ffmpeg | Ubuntu | focal | * |
| Ffmpeg | Ubuntu | jammy | * |
| Ffmpeg | Ubuntu | trusty | * |
| Ffmpeg | Ubuntu | upstream | * |
| Ffmpeg | Ubuntu | xenial | * |