PT-2022-7526 · Libde265+4 · Libde265+4

Peng Deng

·

Published

2022-10-10

·

Updated

2025-06-24

·

CVE-2022-43239

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions libde265 versions prior to 1.0.11
Description The issue is related to a heap-buffer-overflow in the mc chroma function within the motion.cc component of the libde265 video codec implementation. This allows attackers to cause a Denial of Service (DoS) by using a crafted video file.
Recommendations For versions prior to 1.0.11, update to version 1.0.11 to fix the security issue.

Exploit

Fix

DoS

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-06953
CVE-2022-43239
DLA-3280-1
DSA-5346-1
MGASA-2023-0093
ROSA-SA-2025-2630
ROSA-SA-2025-2631
USN-6627-1

Affected Products

Astra Linux
Linuxmint
Red Os
Ubuntu
Libde265