PT-2023-9308 · Gpac+1 · Gpac+1

Tmotfl

·

Published

2023-03-17

·

Updated

2024-08-08

·

CVE-2023-1449

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions GPAC version 2.3-DEV-rev35-gbbca86917-master
Description A vulnerability has been found in the function gf av1 reset state of the file media tools/av parsers.c, which leads to double free. The manipulation can be launched on the local host. The exploit has been disclosed to the public and may be used.
Recommendations To fix this issue, it is recommended to apply a patch. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Double Free

Weakness Enumeration

Related Identifiers

BDU:2024-06193
CVE-2023-1449
DSA-5411-1

Affected Products

Gpac
Red Os