← back
CVE-2020-36330CWE-125

CVE-2020-36330

3Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 2.2%
exploitation probability
2.2%top 18% of all CVEs
observed exploitation
nono source reports it
A flaw was found in libwebp in versions before 1.0.1. An out-of-bounds read was found in function ChunkVerifyAndAssign. The highest threat from this vulnerability is to data confidentiality and to the service availability.
Affected products
n/a · libwebp