Vulnerabilities > Struktur > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-11-03 CVE-2020-23109 Classic Buffer Overflow vulnerability in Struktur Libheif 1.6.2
Buffer overflow vulnerability in function convert_colorspace in heif_colorconversion.cc in libheif v1.6.2, allows attackers to cause a denial of service and disclose sensitive information, via a crafted HEIF file.
network
struktur CWE-120
5.8
2021-09-16 CVE-2020-21594 Out-of-bounds Write vulnerability in Struktur Libde265 1.0.4
libde265 v1.0.4 contains a heap buffer overflow in the put_epel_hv_fallback function, which can be exploited via a crafted a file.
network
low complexity
struktur CWE-787
6.5
2021-09-16 CVE-2020-21595 Out-of-bounds Write vulnerability in Struktur Libde265 1.0.4
libde265 v1.0.4 contains a heap buffer overflow in the mc_luma function, which can be exploited via a crafted a file.
network
low complexity
struktur CWE-787
6.5
2021-09-16 CVE-2020-21596 Classic Buffer Overflow vulnerability in multiple products
libde265 v1.0.4 contains a global buffer overflow in the decode_CABAC_bit function, which can be exploited via a crafted a file.
network
low complexity
struktur debian CWE-120
6.5
2021-09-16 CVE-2020-21597 Out-of-bounds Write vulnerability in multiple products
libde265 v1.0.4 contains a heap buffer overflow in the mc_chroma function, which can be exploited via a crafted a file.
network
low complexity
struktur debian CWE-787
6.5
2021-09-16 CVE-2020-21599 Out-of-bounds Write vulnerability in multiple products
libde265 v1.0.4 contains a heap buffer overflow in the de265_image::available_zscan function, which can be exploited via a crafted a file.
network
low complexity
struktur debian CWE-787
6.5
2021-09-16 CVE-2020-21600 Out-of-bounds Write vulnerability in Struktur Libde265 1.0.4
libde265 v1.0.4 contains a heap buffer overflow in the put_weighted_pred_avg_16_fallback function, which can be exploited via a crafted a file.
network
low complexity
struktur CWE-787
6.5
2021-09-16 CVE-2020-21601 Out-of-bounds Write vulnerability in Struktur Libde265 1.0.4
libde265 v1.0.4 contains a stack buffer overflow in the put_qpel_fallback function, which can be exploited via a crafted a file.
network
low complexity
struktur CWE-787
6.5
2021-09-16 CVE-2020-21602 Out-of-bounds Write vulnerability in Struktur Libde265 1.0.4
libde265 v1.0.4 contains a heap buffer overflow in the put_weighted_bipred_16_fallback function, which can be exploited via a crafted a file.
network
low complexity
struktur CWE-787
6.5
2021-09-16 CVE-2020-21603 Out-of-bounds Write vulnerability in Struktur Libde265 1.0.4
libde265 v1.0.4 contains a heap buffer overflow in the put_qpel_0_0_fallback_16 function, which can be exploited via a crafted a file.
network
low complexity
struktur CWE-787
6.5