CVE-2021-30014: Integer Overflow
Published Apr 19, 2021
·Updated
There is a integer overflow in mediatools/avparsers.c in the hevcparseslicesegment function in GPAC 1.0.1 which results in a crash.
Other sources
There is a integer overflow in mediatools/avparsers.c in the hevcparseslicesegment function in GPAC from v0.9.0-preview to 1.0.1 which results in a crash.
— MITRE
Affected Software
2 affected components
Gpac GPAC=1.0.1
Gpac GPAC>=0.9.0<=1.0.1
Remediation
Event History
Apr 19, 2021
CVE Published
via MITRE·07:34 PM
Data Sourced
via MITRE·07:34 PM
Description
Data Sourced
via NVD·08:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-30014?
CVE-2021-30014 is classified with a severity that can lead to a crash due to integer overflow.
2
How do I fix CVE-2021-30014?
To fix CVE-2021-30014, update GPAC to version 1.0.2 or later.
3
What versions of GPAC are affected by CVE-2021-30014?
CVE-2021-30014 affects GPAC versions from 0.9.0-preview to 1.0.1.
4
What is the impact of CVE-2021-30014?
The impact of CVE-2021-30014 is that it can cause a crash in the application due to an integer overflow.
5
Where can I find more information about CVE-2021-30014?
More information about CVE-2021-30014 can be found in GPAC's commit history and reported issues on their repository.