libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the ff_hevc_put_hevc_epel_pixels_8_sse function at sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input file.
The product dereferences a pointer that it expects to be valid but is NULL.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Libde265 | Struktur | 1.0.10 (including) | 1.0.10 (including) |
Libde265 | Ubuntu | bionic | * |
Libde265 | Ubuntu | esm-apps/bionic | * |
Libde265 | Ubuntu | esm-apps/focal | * |
Libde265 | Ubuntu | esm-apps/jammy | * |
Libde265 | Ubuntu | esm-apps/xenial | * |
Libde265 | Ubuntu | focal | * |
Libde265 | Ubuntu | jammy | * |
Libde265 | Ubuntu | kinetic | * |
Libde265 | Ubuntu | trusty | * |
Libde265 | Ubuntu | upstream | * |
Libde265 | Ubuntu | xenial | * |