CVE-2018-7752: Buffer Overflow
GPAC through 0.7.1 has a Buffer Overflow in the gfmediaavcreadsps function in mediatools/avparsers.c, a different vulnerability than CVE-2018-1000100.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/gpacto a version that resolves this vulnerability.Fixed in 1.0.1+dfsg1-4+deb11u3
Event History
Frequently Asked Questions
What is the severity of CVE-2018-7752?
CVE-2018-7752 is classified as a high severity vulnerability due to the potential for buffer overflow leading to code execution.
How do I fix CVE-2018-7752?
To fix CVE-2018-7752, upgrade to GPAC version 1.0.1+dfsg1-4+deb11u3 or later.
Which software is affected by CVE-2018-7752?
CVE-2018-7752 affects GPAC versions up to and including 0.7.1 on various operating systems including Debian and Ubuntu.
What is the nature of the vulnerability in CVE-2018-7752?
CVE-2018-7752 involves a buffer overflow in the gf_media_avc_read_sps function, which may allow an attacker to execute arbitrary code.
Is CVE-2018-7752 related to other vulnerabilities?
Yes, CVE-2018-7752 is a different vulnerability from CVE-2018-1000100, although both involve the GPAC software.