PT-2023-9310 · Gpac+2 · Gpac+2

Qianshuidewajueji

·

Published

2023-02-15

·

Updated

2024-08-08

·

CVE-2023-0841

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions GPAC version 2.3-DEV-rev40-g3602a5ded
Description A critical issue has been found in the mp3 dmx process function of the file filters/reframe mp3.c, which leads to a heap-based buffer overflow. The attack may be initiated remotely.
Recommendations As a temporary workaround, consider disabling the mp3 dmx process function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Heap Based Buffer Overflow

Memory Corruption

Weakness Enumeration

Related Identifiers

BDU:2024-06196
CVE-2023-0841
GHSA-W52X-CP47-XHHW

Affected Products

Debian
Gpac
Red Os