Synopsis:
aom security updateSummary:
An update for aom is now available for openEuler-20.03-LTS-SP4Description:
The Alliance for Open Media’s focus is to deliver a next-generation video format that is:
Security Fix(es):
Integer overflow in libaom internal function img_alloc_helper can lead to heap buffer overflow. This function can be reached via 3 callers:
An update for aom is now available for master/openEuler-20.03-LTS-SP4/openEuler-22.03-LTS-Next/openEuler-22.03-LTS-SP1/openEuler-22.03-LTS-SP3/openEuler-22.03-LTS-SP4/openEuler-24.03-LTS/openEuler-24.03-LTS-Next.
openEuler Security has rated this update as having a security impact of critical. A Common Vunlnerability Scoring System(CVSS)base score,which gives a detailed severity rating, is available for each vulnerability from the CVElink(s) in the References section.Severity:
CriticalAffected Component:
aom
1.0.0-2.oe2003sp41.0.0-2.oe2003sp41.0.0-2.oe2003sp41.0.0-2.oe2003sp41.0.0-2.oe2003sp4Exploitability
AV:NAC:LPR:NUI:NScope
S:UImpact
C:HI:HA:H9.8/CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H