The build_msps function in libbpg.c in libbpg 0.9.7 allows remote malicious users to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted BPG file, related to hevc_decode_init1.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
libbpg project libbpg 0.9.7 |