CVE-2024-1580
MEDIUM | Platform: iPadOS | Changelog
CVE Details
Description
An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. This can lead to memory corruption within the AV1 decoder. We recommend upgrading past version 1.4.0 of dav1d.
CVSS 3.1 Score
| Metric | Value |
|---|---|
| Base Score | 5.9 (MEDIUM) |
| Vector | CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:L/I:H/A:L |
Weakness
References
- Apple Security Advisory
- NVD Entry
- http://seclists.org/fulldisclosure/2024/Mar/36 (Mailing List)
- http://seclists.org/fulldisclosure/2024/Mar/37 (Mailing List)
- http://seclists.org/fulldisclosure/2024/Mar/38 (Mailing List)
- http://seclists.org/fulldisclosure/2024/Mar/39 (Mailing List)
- http://seclists.org/fulldisclosure/2024/Mar/40 (Mailing List)
- http://seclists.org/fulldisclosure/2024/Mar/41 (Mailing List)
- https://code.videolan.org/videolan/dav1d/-/blob/master/NEWS (Release Notes)
- https://code.videolan.org/videolan/dav1d/-/releases/1.4.0 (Release Notes)