Libass Project

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 6
    Known Exploited: 0
    0
    Critical Level Threats
    6
    High Level Threats
    0
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2020-36430

    libass 0.15.x before 0.15.1 has a heap-based buffer overflow in decode_chars (called from decode_font and process_text) because the wrong integer data type is used for subtraction.

    Last Modified: Nov 21, 2024
    Published: Jul 20, 2021

    CVE-2020-24994

    Stack overflow in the parse_tag function in libass/ass_parse.c in libass before 0.15.0 allows remote attackers to cause a denial of service or remote code execution via a crafted file.

    Last Modified: Nov 21, 2024
    Published: Mar 23, 2021

    CVE-2020-26682

    In libass 0.14.0, the `ass_outline_construct`'s call to `outline_stroke` causes a signed integer overflow.

    Last Modified: Nov 21, 2024
    Published: Oct 16, 2020

    CVE-2016-7969

    The wrap_lines_smart function in ass_render.c in libass before 0.13.4 allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors, related to "0/3 line wrapping equalization."

    Last Modified: Apr 20, 2025
    Published: Mar 03, 2017

    CVE-2016-7970

    Buffer overflow in the calc_coeff function in libass/ass_blur.c in libass before 0.13.4 allows remote attackers to cause a denial of service via unspecified vectors.

    Last Modified: Apr 20, 2025
    Published: Mar 03, 2017
    Items Per Page
    Libass_Project Vulnerabilities & Security CVEs | CVE-DB