CVE-2023-24757: Debian Linux

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

libde265 v1.0.10 was discovered to contain a NULL pointer dereference in the put_unweighted_pred_16_fallback function at fallback-motion.cc. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input file.

Affected products

  • Debian Debian Linux: version 10.0 only
  • Struktur LIBDE265: version 1.0.10 only

Published 2023-03-01. Last modified 2026-06-17.