CVE-2019-11222: Buffer Overflow
Published Apr 12, 2019
·Updated
gfbin128parse in utils/osdivers.c in GPAC 0.7.1 has a buffer overflow issue for the crypt feature when encountering a crafteddrmfile.xml file.
Affected Software
2 affected components
Gpac GPAC=0.7.1
Debian Debian Linux=8.0
Remediation
Event History
Apr 12, 2019
CVE Published
via MITRE·07:05 PM
Data Sourced
via MITRE·07:05 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-11222?
CVE-2019-11222 is classified as a high severity vulnerability due to its potential for causing buffer overflow in affected systems.
2
How do I fix CVE-2019-11222?
To fix CVE-2019-11222, update GPAC to a version later than 0.7.1 where the vulnerability has been addressed.
3
What software versions are affected by CVE-2019-11222?
CVE-2019-11222 affects GPAC version 0.7.1 and Debian Linux version 8.0.
4
What type of vulnerability is CVE-2019-11222?
CVE-2019-11222 is a buffer overflow vulnerability that occurs in the gf_bin128_parse function.
5
In what context does CVE-2019-11222 arise?
CVE-2019-11222 arises when processing a crafted drm_file.xml file in GPAC.