Related Vulnerabilities: CVE-2020-21600  

libde265 v1.0.4 contains a heap buffer overflow in the put_weighted_pred_avg_16_fallback function, which can be exploited via a crafted a file.

Severity Medium

Remote Yes

Type Arbitrary code execution

Description

libde265 v1.0.4 contains a heap buffer overflow in the put_weighted_pred_avg_16_fallback function, which can be exploited via a crafted a file.

AVG-2396 libde265 1.0.8-1 Medium Vulnerable

https://github.com/strukturag/libde265/issues/243