PT-2024-6392 · Gpac+2 · Gpac+2
Yinluming13579
·
Published
2024-02-05
·
Updated
2025-09-26
·
CVE-2024-24267
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
gpac version 2.2.1
Description
The issue is related to a memory leak in the
gf fileio from blob function, specifically via the gfio blob variable. This can be exploited by a remote attacker to cause a denial of service. The memory leak is due to the lack of memory release after its effective term of service.Recommendations
For gpac version 2.2.1, consider disabling the
gf fileio from blob function as a temporary workaround until a patch is available. Restrict access to the gfio blob variable to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.Exploit
Memory Leak
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Debian
Red Os
Gpac