CVE-2023-6349: Webmproject Libvpx
High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.
A heap overflow vulnerability exists in libvpx - Encoding a frame that has larger dimensions than the originally configured size with VP9 may result in a heap overflow in libvpx. We recommend upgrading to version 1.13.1 or above
Affected products
- Webmproject Libvpx: before 1.13.1 (fixed in 1.13.1)
Published 2024-05-27. Last modified 2026-06-17.