CVE-2019-20163: Null Pointer Dereference
Published Dec 30, 2019
·Updated
An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function gfodfavccfgwritebs() in odf/descriptors.c.
Affected Software
3 affected components
Gpac GPAC=0.8.0
Gpac GPAC=0.9.0
Debian Debian Linux=8.0
Event History
Dec 30, 2019
CVE Published
via MITRE·11:56 PM
Data Sourced
via MITRE·11:56 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-20163?
CVE-2019-20163 is categorized as a medium severity vulnerability due to the potential for a NULL pointer dereference.
2
How do I fix CVE-2019-20163?
To fix CVE-2019-20163, upgrade GPAC to a version later than 0.9.0-development-20191109 that addresses this issue.
3
Which versions of GPAC are affected by CVE-2019-20163?
CVE-2019-20163 affects GPAC versions 0.8.0 and 0.9.0-development-20191109.
4
What is a NULL pointer dereference in the context of CVE-2019-20163?
A NULL pointer dereference in CVE-2019-20163 means that the software attempts to access a memory location that is not initialized, leading to potential crashes.
5
Is CVE-2019-20163 specific to any operating system?
CVE-2019-20163 is not specific to any operating system but has been noted in the context of Debian Linux 8.0.