dwauncompress in libavcodec/exr.c in FFmpeg 4.4 allows an out-of-bounds array access because dccount is not strictly checked.
[ { "deprecated": false, "source": "https://github.com/ffmpeg/ffmpeg/commit/26d3c81bc5ef2f8c3f09d45eaeacfb4b1139a777", "signature_type": "Line", "digest": { "threshold": 0.9, "line_hashes": [ "196709895360287458591615415705214410396", "130380091940095792286365522484884190871", "283493446620991118859812463275249449165", "19386626409520732559976923280123000466", "88974277760846921266435675601066312401", "66708020939852844078050880899189869910", "215846995322117982697734546612735061643" ] }, "signature_version": "v1", "target": { "file": "libavcodec/exr.c" }, "id": "CVE-2021-33815-92de094f" }, { "deprecated": false, "source": "https://github.com/ffmpeg/ffmpeg/commit/26d3c81bc5ef2f8c3f09d45eaeacfb4b1139a777", "signature_type": "Function", "digest": { "function_hash": "285466867490307915643097296913297550466", "length": 5286.0 }, "signature_version": "v1", "target": { "function": "dwa_uncompress", "file": "libavcodec/exr.c" }, "id": "CVE-2021-33815-d2c1e13a" } ]