CVE-2023-39616: Aomedia

High severity, CVSS 7.5. EPSS: 0.7% chance of exploitation in the next 30 days.

AOMedia v3.0.0 to v3.5.0 was discovered to contain an invalid read memory access via the component assign_frame_buffer_p in av1/common/av1_common_int.h.

Affected products

  • Aomedia Aomedia: from 3.0.0, up to and including 3.5.0

Published 2023-08-29. Last modified 2026-06-17.