HomeDefectsLIN1022-3508
Fixed

LIN1022-3508 : Security Advisory - libde265 - CVE-2023-24756

Created: Mar 2, 2023    Updated: Jul 27, 2025
Resolved Date: Jul 27, 2025
Found In Version: 10.22.33.1
Severity: Standard
Applicable for: Wind River Linux LTS 22
Component/s: Userspace

Description

libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the ff_hevc_put_unweighted_pred_8_sse function at sse-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input file.

CREATE(Triage):(User=admin) CVE-2023-24756 (https://nvd.nist.gov/vuln/detail/CVE-2023-24756)