Related Vulnerabilities: CVE-2021-32274  

An issue was discovered in faad2 before version 2.10.0. A heap-buffer-overflow exists in the function sbr_qmf_synthesis_64 located in sbr_qmf.c. It allows an attacker to cause code execution.

Severity Medium

Remote Yes

Type Arbitrary code execution

Description

An issue was discovered in faad2 before version 2.10.0. A heap-buffer-overflow exists in the function sbr_qmf_synthesis_64 located in sbr_qmf.c. It allows an attacker to cause code execution.

AVG-2403 faad2 2.9.2-1 2.10.0-1 Medium Fixed

https://github.com/knik0/faad2/issues/60
https://github.com/knik0/faad2/commit/c78251b2b5d41ea840fd61ab9502b3d3036bd747