CVE-2020-22679: Medium severity gpac mp4box vulnerability
Published Oct 12, 2021
·Updated
Memory leak in the sgpdparseentry function in MP4Box in gpac 0.8.0 allows attackers to cause a denial of service (DoS) via a crafted input.
Affected Software
1 affected component
Gpac GPAC=0.8.0
Remediation
Patch Available
Event History
Oct 12, 2021
CVE Published
via MITRE·08:37 PM
Data Sourced
via MITRE·08:37 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-22679?
CVE-2020-22679 has a severity classified as medium due to its potential to cause a denial of service.
2
How do I fix CVE-2020-22679?
To fix CVE-2020-22679, update GPAC to a version that is not vulnerable to this memory leak.
3
What software is affected by CVE-2020-22679?
CVE-2020-22679 specifically affects GPAC version 0.8.0.
4
What type of attack does CVE-2020-22679 enable?
CVE-2020-22679 allows attackers to launch a denial of service (DoS) attack through crafted input.
5
Is CVE-2020-22679 a local or remote vulnerability?
CVE-2020-22679 can be exploited remotely, as it allows attackers to manipulate input to trigger the memory leak.