CVE-2021-45767: Buffer Overflow
Published Jan 14, 2022
·Updated
GPAC 1.1.0 was discovered to contain an invalid memory address dereference via the function lsrreadid(). This vulnerability can lead to a Denial of Service (DoS).
Affected Software
2 affected componentsFixes available
debian/gpac<=0.5.2-426-gc5ad4e4+dfsg5-5
1.0.1+dfsg1-4+deb11u32.2.1+dfsg1-3
Gpac GPAC=1.1.0
Event History
Jan 14, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-45767?
CVE-2021-45767 is classified as a Denial of Service (DoS) vulnerability.
2
How do I fix CVE-2021-45767?
To resolve CVE-2021-45767, upgrade GPAC to version 1.1.0 or later.
3
What product is affected by CVE-2021-45767?
CVE-2021-45767 affects GPAC version 1.1.0 and earlier versions.
4
Is there a workaround for CVE-2021-45767?
There is no official workaround for CVE-2021-45767; updating to a patched version is recommended.
5
What causes CVE-2021-45767?
CVE-2021-45767 is caused by an invalid memory address dereference in the lsr_read_id() function.