Loading
Generated remediation guidance and an executive summary. No account required.
A flaw was found in libwebp in versions before 1.0.1. A heap-based buffer overflow in function WebPDecodeRGBInto is possible due to an invalid check for buffer size. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.
Use CWE-787, Webmproject vendor hub and Libwebp product page to widen CVE-2020-36328 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-4863, CVE-2020-36329 and CVE-2018-25014 for nearby disclosures in the same product family.