CVE-2019-12482: Null Pointer Dereference
Published May 30, 2019
·Updated
An issue was discovered in GPAC 0.7.1. There is a NULL pointer dereference in the function gfisomgetoriginalformattype at isomedia/drmsample.c in libgpac.a, as demonstrated by MP4Box.
Affected Software
3 affected components
Gpac GPAC=0.7.1
Debian Debian Linux=8.0
Gpac GPAC>=0.6.1<=0.7.1
Event History
May 30, 2019
CVE Published
via MITRE·10:40 PM
Data Sourced
via MITRE·10:40 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-12482?
CVE-2019-12482 is classified as a high severity vulnerability due to the potential for a denial of service through a NULL pointer dereference.
2
How do I fix CVE-2019-12482?
To mitigate CVE-2019-12482, upgrade to a patched version of GPAC that addresses this NULL pointer dereference issue.
3
What software is affected by CVE-2019-12482?
CVE-2019-12482 affects GPAC version 0.7.1 specifically.
4
What kind of vulnerability is CVE-2019-12482?
CVE-2019-12482 is a coding vulnerability identified as a NULL pointer dereference that can cause application crashes.
5
Who discovered CVE-2019-12482?
CVE-2019-12482 was discovered through the analysis of GPAC's source code and its potential vulnerabilities.