CVE-2020-6630: Null Pointer Dereference
Published Jan 9, 2020
·Updated
An issue was discovered in GPAC version 0.8.0. There is a NULL pointer dereference in the function gfisomgetmediadatasize() in isomedia/isomread.c.
Affected Software
1 affected component
Gpac GPAC=0.8.0
Event History
Jan 9, 2020
CVE Published
via MITRE·01:04 AM
Data Sourced
via MITRE·01:04 AM
Description
Data Sourced
via NVD·02:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-6630?
CVE-2020-6630 is classified as a medium severity vulnerability due to the potential for application crashes.
2
How does CVE-2020-6630 affect GPAC version 0.8.0?
CVE-2020-6630 affects GPAC version 0.8.0 by allowing a NULL pointer dereference, which may lead to unexpected behavior or crashes.
3
How do I fix CVE-2020-6630?
To fix CVE-2020-6630, upgrade GPAC to a version later than 0.8.0 that addresses this issue.
4
What environments are impacted by CVE-2020-6630?
CVE-2020-6630 impacts environments using GPAC version 0.8.0 for media processing or playback.
5
Is CVE-2020-6630 exploitable remotely?
CVE-2020-6630 is not typically considered remotely exploitable as it requires local execution of the affected application.