CVE-2021-40559: Null Pointer Dereference
Published Jan 12, 2022
·Updated
A null pointer deference vulnerability exists in gpac through 1.0.1 via the naludmxparsenalavc function in reframenalu, which allows a denail of service.
Affected Software
2 affected componentsFixes available
debian/gpac<=0.5.2-426-gc5ad4e4+dfsg5-5
1.0.1+dfsg1-4+deb11u32.2.1+dfsg1-3
Gpac GPAC<=1.0.1
Event History
Jan 12, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-40559?
CVE-2021-40559 has been classified as a denial of service vulnerability.
2
How do I fix CVE-2021-40559?
To fix CVE-2021-40559, upgrade gpac to version 1.0.1+dfsg1-4+deb11u3 or 2.2.1+dfsg1-3.
3
Which versions of gpac are affected by CVE-2021-40559?
CVE-2021-40559 affects gpac versions up to and including 1.0.1.
4
What component is vulnerable in CVE-2021-40559?
The naludmx_parse_nal_avc function in reframe_nalu is the component vulnerable in CVE-2021-40559.
5
What type of application is affected by CVE-2021-40559?
CVE-2021-40559 affects media processing applications that utilize the GPAC library.