CVE-2019-20164: Null Pointer Dereference
Published Dec 30, 2019
·Updated
An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function gfisomboxdel() in isomedia/boxfuncs.c.
Affected Software
2 affected components
Gpac GPAC=0.8.0
Gpac GPAC=0.9.0
Event History
Dec 30, 2019
CVE Published
via MITRE·11:56 PM
Data Sourced
via MITRE·11:56 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-20164?
CVE-2019-20164 is classified as a medium severity vulnerability due to potential denial of service.
2
How do I fix CVE-2019-20164?
To fix CVE-2019-20164, update GPAC to the latest version that addresses the NULL pointer dereference issue.
3
Which versions of GPAC are affected by CVE-2019-20164?
CVE-2019-20164 affects GPAC versions 0.8.0 and 0.9.0-development-20191109.
4
What type of vulnerability is CVE-2019-20164?
CVE-2019-20164 is a NULL pointer dereference vulnerability found in the function gf_isom_box_del().
5
Can CVE-2019-20164 be exploited remotely?
CVE-2019-20164 can potentially be exploited remotely, leading to system instability.