CVE-2020-25427: Null Pointer Dereference
Published Jan 10, 2022
·Updated
A Null pointer dereference vulnerability exits in MP4Box - GPAC version 0.8.0-rev177-g51a8ef874-master via the gfisomgettrackid function, which causes a denial of service.
Affected Software
1 affected component
Gpac GPAC=0.8.0
Remediation
Event History
Jan 10, 2022
CVE Published
via MITRE·09:01 PM
Data Sourced
via MITRE·09:01 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-25427?
CVE-2020-25427 is classified as a denial of service vulnerability.
2
How do I fix CVE-2020-25427?
To fix CVE-2020-25427, update to a version of GPAC that has patched the null pointer dereference issue.
3
What software versions are affected by CVE-2020-25427?
CVE-2020-25427 affects GPAC version 0.8.0.
4
What does CVE-2020-25427 exploit?
CVE-2020-25427 exploits a null pointer dereference in the gf_isom_get_track_id function.
5
Can CVE-2020-25427 be exploited remotely?
CVE-2020-25427 can potentially be exploited remotely, leading to a denial of service.