Skip to main content

Vendor/product archive

webmproject / libwebp CVEs

Beta · best-effort

15 CVEs tagged to webmproject / libwebp10 Critical, 3 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2023-4863

Published Sep 12, 2023

Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML pa…

CVSS 8.8 · High
evidence mentions
30
Buzz score
72.5
KEV listed

CVE-2023-1999

Published Jun 20, 2023

There exists a use after free/double free in libwebp. An attacker can use the ApplyFiltersAndEncode() function and loop through to free best.bw and assign best = trial pointer. Th…

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-15 of 15 CVEsPage 1 of 1