PT-2021-6596 · Gpac+1 · Gpac+1

Published

2018-12-19

·

Updated

2023-05-05

·

CVE-2021-32270

CVSS v2.0

7.1

High

VectorAV:N/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions gpac versions through 20200801
Description An issue exists in the function vwid box del located in box code base.c, which allows an attacker to cause Denial of Service due to a NULL pointer dereference. This issue can be exploited by a remote attacker.
Recommendations For gpac versions through 20200801, as a temporary workaround, consider disabling the vwid box del function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

ALT-PU-2018-2923
ALT-PU-2021-1569
BDU:2022-01862
CVE-2021-32270

Affected Products

Alt Linux
Gpac