Bug 2283553 (CVE-2023-6349) - CVE-2023-6349 libvpx: Heap buffer overflow related to VP9 encoding
Summary: CVE-2023-6349 libvpx: Heap buffer overflow related to VP9 encoding
Status: NEW
Alias: CVE-2023-6349
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
Target Milestone: ---
Assignee: Product Security
QA Contact:
Depends On: 2283554 2283557 2283559 2283560 2283556 2283558 2283561 2303418
Blocks: 2283563
TreeView+ depends on / blocked
Reported: 2024-05-27 21:56 UTC by Pedro Sampaio
Modified: 2024-09-05 16:43 UTC (History)
6 users (show)

Fixed In Version: libvpx 1.13.1
Doc Type: ---
Doc Text:
A flaw was found in libvpx. Encoding a frame with larger dimensions than the original configured size with VP9 may result in a heap overflow.
Clone Of:
Last Closed:

Attachments (Terms of Use)

System ID Private Priority Status Summary Last Updated
Red Hat Product Errata RHBA-2024:6435 0 None None None 2024-09-05 16:43:07 UTC
Red Hat Product Errata RHSA-2024:5941 0 None None None 2024-08-28 15:44:47 UTC

Description Pedro Sampaio 2024-05-27 21:56:06 UTC
A heap overflow vulnerability exists in libvpx - Encoding a frame that has larger dimensions than the originally configured size with VP9 may result in a heap overflow in libvpx.
We recommend upgrading to version 1.13.1 or above



Comment 1 Pedro Sampaio 2024-05-27 21:56:21 UTC
Created libvpx tracking bugs for this issue:

Affects: fedora-all [bug 2283554]

Comment 2 Pedro Sampaio 2024-05-27 22:01:21 UTC
Created chromium tracking bugs for this issue:

Affects: epel-all [bug 2283556]
Affects: fedora-all [bug 2283558]

Created libvpx7 tracking bugs for this issue:

Affects: fedora-all [bug 2283559]

Created libvpx8 tracking bugs for this issue:

Affects: fedora-all [bug 2283560]

Created obs-cef tracking bugs for this issue:

Affects: fedora-all [bug 2283561]

Created qt5-qtwebengine tracking bugs for this issue:

Affects: epel-all [bug 2283557]

Comment 4 errata-xmlrpc 2024-08-28 15:44:46 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2024:5941 https://access.redhat.com/errata/RHSA-2024:5941

Note You need to log in before you can comment on or make changes to this bug.