PT-2024-6392 · Gpac+2 · Gpac+2

Yinluming13579

·

Published

2024-02-05

·

Updated

2025-09-26

·

CVE-2024-24267

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions gpac version 2.2.1
Description The issue is related to a memory leak in the gf fileio from blob function, specifically via the gfio blob variable. This can be exploited by a remote attacker to cause a denial of service. The memory leak is due to the lack of memory release after its effective term of service.
Recommendations For gpac version 2.2.1, consider disabling the gf fileio from blob function as a temporary workaround until a patch is available. Restrict access to the gfio blob variable to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Memory Leak

Weakness Enumeration

Related Identifiers

BDU:2024-07446
CVE-2024-24267

Affected Products

Debian
Red Os
Gpac