CVE-2019-20167: Null Pointer Dereference
Published Dec 30, 2019
·Updated
An issue was discovered in GPAC version 0.8.0 and 0.9.0-development-20191109. There is a NULL pointer dereference in the function sencParse() in isomedia/boxcodedrm.c.
Affected Software
2 affected components
Gpac GPAC=0.8.0
Gpac GPAC=0.9.0
Event History
Dec 30, 2019
CVE Published
via MITRE·11:55 PM
Data Sourced
via MITRE·11:55 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-20167?
CVE-2019-20167 is classified as a medium severity vulnerability due to its potential for causing application crashes.
2
How do I fix CVE-2019-20167?
To fix CVE-2019-20167, users should upgrade to a patched version of GPAC beyond 0.9.0-development.
3
What software is affected by CVE-2019-20167?
CVE-2019-20167 affects GPAC versions 0.8.0 and 0.9.0-development-20191109.
4
What type of vulnerability is CVE-2019-20167?
CVE-2019-20167 is a NULL pointer dereference vulnerability located in the senc_Parse() function.
5
Are there any known exploits for CVE-2019-20167?
As of now, there are no publicly known exploits for CVE-2019-20167.