A heap-buffer-overflow had occurred in function gfisomdoviconfigget of isomedia/avc_ext.c:2490, as demonstrated by MP4Box. This vulnerability was fixed in commit fef6242.
{ "versions": [ { "introduced": "0" }, { "fixed": "2.2.0" } ] }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-36191.json"