CVE-2021-30473: Critical severity aom vulnerability
aomimage.c in libaom in AOMedia before 2021-04-07 frees memory that is not located on the heap.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2021-30473?
CVE-2021-30473 is a vulnerability in libaom that allows an attacker to free memory that is not located on the heap, potentially leading to a crash or arbitrary code execution.
What is the severity of CVE-2021-30473?
CVE-2021-30473 has a severity rating of 9.8 (Critical).
Which software are affected by CVE-2021-30473?
The following software versions are affected by CVE-2021-30473: Aomedia before 2021-04-07, Fedora 34, debian/aom up to version 1.0.0-3, and ubuntu/aom on focal.
How can the CVE-2021-30473 vulnerability be exploited?
An attacker can exploit CVE-2021-30473 by manipulating memory outside the allocated heap to cause a crash or execute arbitrary code.
How can I fix CVE-2021-30473?
To fix CVE-2021-30473, it is recommended to update to the latest version of the affected software or apply the provided patches from the respective vendors and maintainers.