<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 07:11:58 +0000</lastBuildDate>
    <item>
      <title>ALSA-2023:5537 — Important: libvpx security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2023:5537</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: libvpx, AlmaLinux:8: libvpx-devel&lt;/p&gt;
&lt;p&gt;The libvpx packages provide the VP8 SDK, which allows the encoding and decoding of the VP8 video codec, commonly used with the WebM multimedia container file format.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libvpx: Heap buffer overflow in vp8 encoding in libvpx (CVE-2023-5217)
* libvpx: crash related to VP9 encoding in libvpx (CVE-2023-44488)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: libvpx, AlmaLinux:8: libvpx-devel&lt;/p&gt;
&lt;p&gt;The libvpx packages provide the VP8 SDK, which allows the encoding and decoding of the VP8 video codec, commonly used with the WebM multimedia container file format.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* libvpx: Heap buffer overflow in vp8 encoding in libvpx (CVE-2023-5217)
* libvpx: crash related to VP9 encoding in libvpx (CVE-2023-44488)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2023:5537</guid>
    </item>
    <item>
      <title>bdu:2023-06350</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2023-06350</link>
      <description>bdu:2023-06350</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2023-06350</guid>
    </item>
    <item>
      <title>EUVD-2026-187166</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-187166</link>
      <description>EUVD-2026-187166</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-187166</guid>
    </item>
    <item>
      <title>fkie_cve-2023-44488</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2023-44488</link>
      <description>&lt;p&gt;VP9 in libvpx before 1.13.1 mishandles widths, leading to a crash related to encoding.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;VP9 in libvpx before 1.13.1 mishandles widths, leading to a crash related to encoding.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2023-44488</guid>
    </item>
    <item>
      <title>GHSA-wc24-pw3j-j6vw</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-wc24-pw3j-j6vw</link>
      <description>&lt;p&gt;VP9 in libvpx before 1.13.1 mishandles widths, leading to a crash related to encoding.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;VP9 in libvpx before 1.13.1 mishandles widths, leading to a crash related to encoding.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-wc24-pw3j-j6vw</guid>
    </item>
    <item>
      <title>gsd-2023-44488</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2023-44488</link>
      <description>gsd-2023-44488</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2023-44488</guid>
    </item>
    <item>
      <title>msrc_CVE-2023-44488 — VP9 in libvpx before 1.13.1 mishandles widths leading to a crash related to encoding.</title>
      <link>https://cve.radiocsirt.org/vuln/msrc_cve-2023-44488</link>
      <description>msrc_CVE-2023-44488</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/msrc_cve-2023-44488</guid>
    </item>
    <item>
      <title>OESA-2023-1740 — libvpx security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2023-1740</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: libvpx, openEuler:20.03-LTS-SP3: libvpx, openEuler:22.03-LTS: libvpx, openEuler:22.03-LTS-SP1: libvpx, openEuler:22.03-LTS-SP2: libvpx&lt;/p&gt;
&lt;p&gt;libvpx provides the VP8/VP9 SDK, which allows you to integrate your applications with the VP8 and VP9 video codecs, high quality, royalty free, open source codecs deployed on millions of computers and devices worldwide.&#13;
&#13;
Security Fix(es):&#13;
&#13;
VP9 in libvpx before 1.13.1 mishandles widths, leading to a crash related to encoding.(CVE-2023-44488)&#13;
&#13;
Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)(CVE-2023-5217)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:20.03-LTS-SP1: libvpx, openEuler:20.03-LTS-SP3: libvpx, openEuler:22.03-LTS: libvpx, openEuler:22.03-LTS-SP1: libvpx, openEuler:22.03-LTS-SP2: libvpx&lt;/p&gt;
&lt;p&gt;libvpx provides the VP8/VP9 SDK, which allows you to integrate your applications with the VP8 and VP9 video codecs, high quality, royalty free, open source codecs deployed on millions of computers and devices worldwide.&#13;
&#13;
Security Fix(es):&#13;
&#13;
VP9 in libvpx before 1.13.1 mishandles widths, leading to a crash related to encoding.(CVE-2023-44488)&#13;
&#13;
Heap buffer overflow in vp8 encoding in libvpx in Google Chrome prior to 117.0.5938.132 and libvpx 1.13.1 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)(CVE-2023-5217)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2023-1740</guid>
    </item>
    <item>
      <title>RHSA-2023:5534 — Red Hat Security Advisory: libvpx security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2023:5534</link>
      <description>&lt;p&gt;libvpx: Heap buffer overflow in vp8 encoding in libvpx libvpx: crash related to VP9 encoding in libvpx&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libvpx: Heap buffer overflow in vp8 encoding in libvpx libvpx: crash related to VP9 encoding in libvpx&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2023:5534</guid>
    </item>
    <item>
      <title>RHSA-2023:5537 — Red Hat Security Advisory: libvpx security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2023:5537</link>
      <description>&lt;p&gt;libvpx: Heap buffer overflow in vp8 encoding in libvpx libvpx: crash related to VP9 encoding in libvpx&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;libvpx: Heap buffer overflow in vp8 encoding in libvpx libvpx: crash related to VP9 encoding in libvpx&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2023:5537</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2023-44488</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-44488</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: libvpx, Ubuntu:Pro:16.04:LTS: libvpx, Ubuntu:Pro:18.04:LTS: libvpx, Ubuntu:18.04:LTS: mozjs52, Ubuntu:18.04:LTS: mozjs38, Ubuntu:20.04:LTS: firefox, Ubuntu:20.04:LTS: libvpx, Ubuntu:20.04:LTS: mozjs68, Ubuntu:20.04:LTS: mozjs52, Ubuntu:22.04:LTS: libvpx and 5 more&lt;/p&gt;
&lt;p&gt;VP9 in libvpx before 1.13.1 mishandles widths, leading to a crash related to encoding.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:14.04:LTS: libvpx, Ubuntu:Pro:16.04:LTS: libvpx, Ubuntu:Pro:18.04:LTS: libvpx, Ubuntu:18.04:LTS: mozjs52, Ubuntu:18.04:LTS: mozjs38, Ubuntu:20.04:LTS: firefox, Ubuntu:20.04:LTS: libvpx, Ubuntu:20.04:LTS: mozjs68, Ubuntu:20.04:LTS: mozjs52, Ubuntu:22.04:LTS: libvpx and 5 more&lt;/p&gt;
&lt;p&gt;VP9 in libvpx before 1.13.1 mishandles widths, leading to a crash related to encoding.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-44488</guid>
    </item>
    <item>
      <title>WID-SEC-W-2023-2599 — Red Hat Enterprise Linux (libvpx): Mehrere Schwachstellen</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2599</link>
      <description>&lt;p&gt;Ein entfernter anonymer Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux in der Komponente libvpx ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen oder beliebigen Code auszuführen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter anonymer Angreifer kann mehrere Schwachstellen in Red Hat Enterprise Linux in der Komponente libvpx ausnutzen, um einen Denial-of-Service-Zustand zu erzeugen oder beliebigen Code auszuführen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2599</guid>
    </item>
  </channel>
</rss>
