smc_encode_stream of the file libavcodec/smcenc.c of the component QuickTime Graphics Video Encoder. Performing a manipulation of the argument y_size results in out-of-bounds read.This vulnerability was named CVE-2022-3965. The attack may be initiated remotely. There is no available exploit.
It is recommended to apply a patch to fix this issue.
SOCIAL SHARE CARD GENERATOR