CVE-2023-6349: Webmproject Libvpx

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

A heap overflow vulnerability exists in libvpx - Encoding a frame that has larger dimensions than the originally configured size with VP9 may result in a heap overflow in libvpx. We recommend upgrading to version 1.13.1 or above

Affected products

Published 2024-05-27. Last modified 2026-06-17.