UBUNTU-CVE-2023-1999
Dashboard / Vulnerabilities / UBUNTU-CVE-2023-1999
UBUNTU-CVE-2023-1999
Summary:
Details: There exists a use after free/double free in libwebp. An attacker can use the ApplyFiltersAndEncode() function and loop through to free best.bw and assign best = trial pointer. The second loop will then return 0 because of an Out of memory error in VP8 encoder, the pointer is still assigned to trial and the AddressSanitizer will attempt a double free.
References: https://ubuntu.com/security/CVE-2023-1999, https://www.mozilla.org/en-US/security/advisories/mfsa2023-13/#CVE-2023-1999, https://www.mozilla.org/en-US/security/advisories/mfsa2023-14/#CVE-2023-1999, https://www.mozilla.org/en-US/security/advisories/mfsa2023-15/#CVE-2023-1999, https://ubuntu.com/security/notices/USN-6078-1, https://ubuntu.com/security/notices/USN-6078-2, https://www.cve.org/CVERecord?id=CVE-2023-1999
Affected packages
Package
Name: libwebp
Purl: pkg:deb/ubuntu/libwebp?arch=source&distro=esm-infra-legacy%2Ftrusty
Affected ranges
Type: ECOSYSTEM
Events:
