First published: Fri Apr 12 2019(Updated: )
gf_bin128_parse in utils/os_divers.c in GPAC 0.7.1 has a buffer overflow issue for the crypt feature when encountering a crafted_drm_file.xml file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GPAC MP4Box | =0.7.1 | |
Debian Linux | =8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-11222 is classified as a high severity vulnerability due to its potential for causing buffer overflow in affected systems.
To fix CVE-2019-11222, update GPAC to a version later than 0.7.1 where the vulnerability has been addressed.
CVE-2019-11222 affects GPAC version 0.7.1 and Debian Linux version 8.0.
CVE-2019-11222 is a buffer overflow vulnerability that occurs in the gf_bin128_parse function.
CVE-2019-11222 arises when processing a crafted drm_file.xml file in GPAC.