{"id":"PUB-A-193442575","details":"In 'ih264e_find_bskip_params()' of ih264e_me.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.","aliases":["A-193442575","CVE-2021-0998"],"modified":"2026-09-18T15:47:37.392928379Z","published":"2021-12-01T00:00:00Z","references":[{"type":"ADVISORY","url":"https://source.android.com/security/bulletin/2021-12-01"},{"type":"FIX","url":"https://android.googlesource.com/platform/external/libavc/+/2f3d043b17d00df222ec19c11014c7de27caa6f5"}],"affected":[{"package":{"name":"platform/external/libavc","ecosystem":"Android"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"12:0"},{"fixed":"12:2021-12-01"}]}],"versions":["12"],"ecosystem_specific":{"vanir_signatures":[{"source":"https://android.googlesource.com/platform/external/libavc/+/2f3d043b17d00df222ec19c11014c7de27caa6f5","target":{"file":"encoder/ih264e_api.c"},"deprecated":false,"digest":{"threshold":0.9,"line_hashes":["200379714733293227417754227594358170013","15268792044800260968382807296639589458","290916752263289187891812336718207654893","54901536950139771812429537628854285332"]},"id":"PUB-A-193442575-8d68cb8d","signature_type":"Line","signature_version":"v1"},{"signature_version":"v1","source":"https://android.googlesource.com/platform/external/libavc/+/2f3d043b17d00df222ec19c11014c7de27caa6f5","target":{"file":"encoder/ih264e_api.c","function":"ih264e_init_mem_rec"},"deprecated":false,"digest":{"function_hash":"156282991969587907165341020502167311297","length":15858},"id":"PUB-A-193442575-9873b76b","signature_type":"Function"}],"fixes":["https://android.googlesource.com/platform/external/libavc/+/2f3d043b17d00df222ec19c11014c7de27caa6f5"],"severity":"Moderate","spl":"2021-12-01","types":["ID"]},"database_specific":{"source":"https://storage.googleapis.com/android-osv/PUB-A-193442575.json"}}],"schema_version":"1.9.0"}