CVE-2021-33362: Buffer Overflow
Published Sep 13, 2021
·Updated
Stack buffer overflow in the hevcparsevpsextension function in MP4Box in GPAC 1.0.1 allows attackers to cause a denial of service or execute arbitrary code via a crafted file.
Affected Software
1 affected component
Gpac GPAC=1.0.1
Remediation
Patch Available
Event History
Sep 13, 2021
CVE Published
via MITRE·06:45 PM
Data Sourced
via MITRE·06:45 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-33362?
CVE-2021-33362 is classified as a high-severity vulnerability due to its potential for denial of service and arbitrary code execution.
2
How do I fix CVE-2021-33362?
To fix CVE-2021-33362, upgrade to a patched version of GPAC that addresses this stack buffer overflow vulnerability.
3
What types of attacks can exploit CVE-2021-33362?
CVE-2021-33362 can be exploited to cause denial of service or execute arbitrary code by using a crafted file.
4
Which versions of GPAC are affected by CVE-2021-33362?
CVE-2021-33362 specifically affects GPAC version 1.0.1.
5
In what function does CVE-2021-33362 occur?
CVE-2021-33362 occurs in the hevc_parse_vps_extension function within MP4Box in GPAC.