First published: Tue Sep 21 2021(Updated: )
An issue was discovered in gpac 0.8.0. The gf_hinter_track_process function in isom_hinter_track_process.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted media file
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GPAC MP4Box | =0.8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-23267 is considered high due to the potential for denial of service through a heap-based buffer overflow.
To fix CVE-2020-23267, upgrade to a patched version of GPAC that addresses this heap-based buffer overflow vulnerability.
CVE-2020-23267 affects GPAC version 0.8.0.
Yes, CVE-2020-23267 can be exploited remotely via a crafted media file.
Exploiting CVE-2020-23267 could lead to a denial of service, causing the application to crash.