7.5
CVSSv2

CVE-2021-30473

Published: 06/05/2021 Updated: 31/01/2024
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

aom_image.c in libaom in AOMedia prior to 2021-04-07 frees memory that is not located on the heap.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

aomedia aomedia

fedoraproject fedora 34

Vendor Advisories

Debian Bug report logs - #988211 CVE-2021-30473 Package: src:aom; Maintainer for src:aom is Debian Multimedia Maintainers <debian-multimedia@listsdebianorg>; Reported by: Moritz Muehlenhoff <jmm@debianorg> Date: Fri, 7 May 2021 19:27:01 UTC Severity: important Tags: security Reply or subscribe to this bug ...
Multiple security vulnerabilities have been discovered in aom, the AV1 Video Codec Library Buffer overflows, use-after-free and NULL pointer dereferences may cause a denial of service or other unspecified impact if a malformed multimedia file is processed For the oldstable distribution (bullseye), these problems have been fixed in version 100e ...
aom_imagec in libaom in AOMedia before version 310 frees memory that is not located on the heap ...