CVE-2020-21596 PUBLISHED

libde265 v1.0.4 contains a global buffer overflow in the decode_CABAC_bit function, which can be exploited via a crafted a file.

EPSS 0.27% · 50.2th percentile

Risk Scores

EPSS Score
0.27%
50.2th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSlibde2651.0.4-1build1, 1.0.3-1build1, 1.0.4-1
Ubuntu:Pro:18.04:LTSlibde2651.0.2-2build1, 0
Ubuntu:Pro:16.04:LTSlibde2650, 1.0.2-2, 1.0.2-1build1

Timeline

References

Open in Interactive Console →