CVE-2025-48175

EUVD-2025-15403
In libavif before 1.3.0, avifImageRGBToYUV in reformat.c has integer overflows in multiplications involving rgbRowBytes, yRowBytes, uRowBytes, and vRowBytes.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.5 MEDIUM
LOCAL
HIGH
NONE
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:C/C:N/I:L/A:L
Base Score
CVSS 3.x
EPSS Score
Percentile: 24.6%
Affected Products (NVD)
VendorProductVersion
aomedialibavif
𝑥
< 1.3.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
libavif
bookworm
0.11.1-1+deb12u1
fixed
bookworm (security)
0.11.1-1+deb12u1
fixed
bullseye
vulnerable
bullseye (security)
0.8.4-2+deb11u2
fixed
forky
1.4.2-1
fixed
sid
1.4.2-1
fixed
trixie
1.2.1-1.2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
libavif
focal
dne
jammy
needs-triage
noble
needs-triage
oracular
ignored
plucky
ignored
questing
ignored
resolute
needs-triage