An integer overflow in dav1d AV1 decoder that can occur when decoding videos with large frame size. This can lead to memory corruption within the AV1 decoder. We recommend upgrading past version 1.4.0 of dav1d.
CVSS Details
- CVSS 3.1 Base Score: 5.9
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | alpine-linux-upgrade-dav1d | Mar 26, 2024 | Feb 19, 2024 | |
| Apple Osx Coremedia | apple-osx-upgrade-latest | Jun 25, 2026 | Jun 25, 2026 | |
| Apple Osx Webrtc | apple-osx-upgrade-latest | Jun 25, 2026 | Jun 25, 2026 | |
| Apple Safari | apple-safari-upgrade-17_4_1apple-safari-windows-uninstall | Mar 26, 2024 | Feb 19, 2024 | |
| Debian | debian-upgrade-dav1d | May 13, 2024 | Feb 19, 2024 | |
| Freebsd | freebsd-upgrade-package-electron27freebsd-upgrade-package-electron28freebsd-upgrade-package-electron29 | Dec 10, 2025 | Apr 18, 2024 | |
| Suse | — | suse-upgrade-dav1dsuse-upgrade-dav1d-develsuse-upgrade-libdav1d5suse-upgrade-libdav1d6suse-upgrade-libdav1d6-32bitsuse-upgrade-libdav1d7 | Mar 22, 2024 | Feb 19, 2024 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub