CVE-2023-46001

Buffer Overflow vulnerability in gpac MP4Box v.2.3-DEV-rev573-g201320819-master allows a local attacker to cause a denial of service via the gpac/src/isomedia/isom_read.c:2807:51 function in gf_isom_get_user_data.
Configurations

Configuration 1 (hide)

cpe:2.3:a:gpac:gpac:2.3-dev-rev573-g201320819-master:*:*:*:*:*:*:*

History

16 Nov 2023, 16:17

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
First Time Gpac
Gpac gpac
CWE CWE-120
CPE cpe:2.3:a:gpac:gpac:2.3-dev-rev573-g201320819-master:*:*:*:*:*:*:*
References () https://github.com/gpac/gpac/issues/2629 - () https://github.com/gpac/gpac/issues/2629 - Exploit, Issue Tracking, Patch
References () https://github.com/gpac/gpac/commit/e79b0cf7e72404750630bc01340e999f3940dbc4 - () https://github.com/gpac/gpac/commit/e79b0cf7e72404750630bc01340e999f3940dbc4 - Patch

08 Nov 2023, 14:03

Type Values Removed Values Added
New CVE

Information

Published : 2023-11-07 22:15

Updated : 2023-12-10 15:26


NVD link : CVE-2023-46001

Mitre link : CVE-2023-46001

CVE.ORG link : CVE-2023-46001


JSON object : View

Products Affected

gpac

  • gpac
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')