Related Vulnerabilities: CVE-2021-32277  

An issue was discovered in faad2 before version 2.10.0. A heap-buffer-overflow exists in the function sbr_qmf_analysis_32 located in sbr_qmf.c. It allows an attacker to cause code execution.

Severity Medium

Remote Yes

Type Arbitrary code execution

Description

An issue was discovered in faad2 before version 2.10.0. A heap-buffer-overflow exists in the function sbr_qmf_analysis_32 located in sbr_qmf.c. It allows an attacker to cause code execution.

AVG-2403 faad2 2.9.2-1 2.10.0-1 Medium Fixed

https://github.com/knik0/faad2/issues/59
https://github.com/knik0/faad2/commit/c78251b2b5d41ea840fd61ab9502b3d3036bd747