CVE-2021-40568

gpac/gpac
on github

Published

Severity

CVSS v3:
7.8 HIGH
CVSS v2:
6.8 MEDIUM

Description

A buffer overflow vulnerability exists in Gpac through 1.0.1 via a malformed MP4 file in the svc_parse_slice function in av_parsers.c, which allows attackers to cause a denial of service, even code execution and escalation of privileges.

References

Configurations

CPE23Version StartVersion EndExact Version
cpe:2.3:a:gpac:gpac:*:*:*:*:*:*:*:*n/a1.0.1 (including)*

External Links