VP9 in libvpx before 1.13.1 mishandles widths, leading to a crash related to encoding.
Reference: https://github.com/advisories/GHSA-wc24-pw3j-j6vw
Upstream patch: https://github.com/webmproject/libvpx/commit/263682c9a29395055f3b3afe2d97be1828a6223f
VP8 Codec SDK (libvpx) before 1.0.0 "Duclair" allows remote attackers to cause a denial of service (application crash) via (1) unspecified "corrupt input" or (2) by "starting decoding from a P-frame," which triggers an out-of-bounds read, related to "the clamping of motion vectors in SPLITMV blocks".