CVE-2020-36430
20.07.2021, 07:15
libass 0.15.x before 0.15.1 has a heap-based buffer overflow in decode_chars (called from decode_font and process_text) because the wrong integer data type is used for subtraction.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| libass_project | libass | 0.15.0 ≤ 𝑥 < 0.15.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libass-devel |
| ||||||||||||||||||||||||||||||||||||||||||||
| libass9 |
|
Common Weakness Enumeration
References