Critical Integer Overflow Vulnerability in dav1d AV1 Decoder

Critical Integer Overflow Vulnerability in dav1d AV1 Decoder

CVE-2024-1580 · MEDIUM Severity

CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:L/I:H/A:L

An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. This can lead to memory corruption within the AV1 decoder. We recommend upgrading past version 1.4.0 of dav1d.

Learn more about our Web Application Penetration Testing UK.