CVE-2020-21594 PUBLISHED

libde265 v1.0.4 contains a heap buffer overflow in the put_epel_hv_fallback function, which can be exploited via a crafted a file.

EPSS 0.14% · 34.2th percentile

Risk Scores

EPSS Score
0.14%
34.2th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:18.04:LTSlibde2650, 1.0.2-2build1
Ubuntu:Pro:16.04:LTSlibde2650, 1.0.2-1build1, 1.0.2-2

Timeline

References

Open in Interactive Console →