QID 379268
Date Published: 2024-01-25
QID 379268: GPAC Heap Buffer Overflow Vulnerability(Generic)
Heap Buffer Overflow vulnerability in GPAC version 2.3-DEV-rev617-g671976fcc-master, allows attackers to execute arbitrary code and cause a denial of service (DoS) via str2ulong class in src/media_tools/avilib.c in gpac/MP4Box.
Affected Version :
GPAC version 2.3-DEV-rev617-g671976fcc-master
QID Detection Logic (Authenticated) :
This qid checks version of GPAC installed using package installer command.
On successful exploitation it allows attackers to execute arbitrary code and cause a denial of service .
Solution
Vendor has release fix. Refer to GPAC for updates and patch information.
Vendor References
CVEs related to QID 379268
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GPAC |
|