CVE-2022-47665: Buffer Overflow
Published Mar 3, 2023
·Updated
Libde265 1.0.9 has a heap buffer overflow vulnerability in de265image::setSliceAddrRS(int, int, int)
Affected Software
7 affected componentsFixes available
debian/libde265<=1.0.3-1
1.0.11-0+deb10u61.0.11-0+deb11u31.0.11-0+deb11u11.0.11-1+deb12u21.0.15-1
ubuntu/libde265<1.0.2-2ubuntu0.18.04.1~
1.0.2-2ubuntu0.18.04.1~
ubuntu/libde265<1.0.4-1ubuntu0.3
1.0.4-1ubuntu0.3
ubuntu/libde265<1.0.8-1ubuntu0.2
1.0.8-1ubuntu0.2
ubuntu/libde265<1.0.10
1.0.10
ubuntu/libde265<1.0.2-2ubuntu0.16.04.1~
1.0.2-2ubuntu0.16.04.1~
struktur libde265=1.0.9
Remediation
Patch Available
Event History
Mar 3, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Feb 26, 2024
Data Sourced
via Launchpad·09:10 PM
Description
Frequently Asked Questions
1
What is CVE-2022-47665?
CVE-2022-47665 is a heap buffer overflow vulnerability in Libde265 version 1.0.9.
2
How severe is CVE-2022-47665?
CVE-2022-47665 has a severity of 7.8 (high).
3
How does CVE-2022-47665 affect the software?
CVE-2022-47665 affects Struktur Libde265 version 1.0.9.
4
Is there a fix available for CVE-2022-47665?
Currently, no official fix has been released for CVE-2022-47665. It is recommended to update to a newer version or apply patches once available.
5
Where can I find more information about CVE-2022-47665?
You can find more information about CVE-2022-47665 at the following link: [GitHub - Libde265 Issue #369](https://github.com/strukturag/libde265/issues/369)