Related Vulnerabilities: CVE-2021-32273  

An issue was discovered in faad2 before version 2.10.0. A stack-buffer-overflow exists in the function ftypin located in mp4read.c. It allows an attacker to cause code execution.

Severity Medium

Remote Yes

Type Arbitrary code execution

Description

An issue was discovered in faad2 before version 2.10.0. A stack-buffer-overflow exists in the function ftypin located in mp4read.c. It allows an attacker to cause code execution.

AVG-2403 faad2 2.9.2-1 2.10.0-1 Medium Fixed

https://github.com/knik0/faad2/issues/56
https://github.com/knik0/faad2/commit/1073aeef823cafd844704389e9a497c257768e2f