Closed fdu-sec closed 10 months ago
I could not reproduce the POC even with many runs of dec265
.
However, the above commit could be a potential fix.
Please confirm whether this fixes it.
Yes. the above commit may be fix it. You can reproduce this issue at commit 7065a53.
CVE-2023-49465 is assigned for this issue.
Description
heap-buffer-overflow
libde265/libde265/motion.cc:1860
inderive_spatial_luma_vector_prediction(base_context*, de265_image*, slice_segment_header const*, int, int, int, int, int, int, int, int, int, int, unsigned char*, MotionVector*)
Version
Replay
ASAN
POC
poc
Environment
Credit
Yuchuan Meng (Fudan University)