An issue was discovered in the FFmpeg package, where vp3decodeframe in libavcodec/vp3.c lacks check of the return value of av_malloc() and will cause a null pointer dereference, impacting availability.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-3109.json"