CVE-2021-46039: Null Pointer Dereference
Published Jan 6, 2022
·Updated
A Pointer Dereference Vulnerabilty exists in GPAC 1.0.1 via the shiftchunkoffsets.part function, which causes a Denial of Service (context-dependent).
Affected Software
2 affected componentsFixes available
debian/gpac<=0.5.2-426-gc5ad4e4+dfsg5-5
1.0.1+dfsg1-4+deb11u32.2.1+dfsg1-3
Gpac GPAC=1.0.1
Event History
Jan 6, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-46039?
CVE-2021-46039 is classified as a Denial of Service vulnerability.
2
How do I fix CVE-2021-46039?
To fix CVE-2021-46039, update GPAC to version 1.0.1+dfsg1-4+deb11u3 or 2.2.1+dfsg1-3.
3
Which versions of GPAC are affected by CVE-2021-46039?
GPAC versions up to and including 1.0.1 and up to 0.5.2-426-gc5ad4e4+dfsg5-5 are affected.
4
What causes the CVE-2021-46039 vulnerability?
CVE-2021-46039 is caused by a pointer dereference issue within the shift_chunk_offsets.part function.
5
Is there a known exploit for CVE-2021-46039?
While CVE-2021-46039 can result in Denial of Service, specific exploits have not been publicly disclosed.