CVE-2023-6879: Aomedia

Critical severity, CVSS 9.8. EPSS: 1.2% chance of exploitation in the next 30 days.

Increasing the resolution of video frames, while performing a multi-threaded encode, can result in a heap overflow in av1_loop_restoration_dealloc().

Affected products

  • Aomedia Aomedia: before 3.7.1 (fixed in 3.7.1)
  • Fedoraproject Fedora: version 38 only; version 39 only

Published 2023-12-27. Last modified 2026-06-23.