CVE-2022-2454: Integer Overflow or Wraparound in gpac/gpac
Published Jul 19, 2022
·Updated
Integer Overflow or Wraparound in GitHub repository gpac/gpac prior to 2.1-DEV.
Affected Software
2 affected componentsFixes available
debian/gpac<=0.5.2-426-gc5ad4e4+dfsg5-5
1.0.1+dfsg1-4+deb11u32.2.1+dfsg1-3
Gpac GPAC<=2.0.0
Remediation
Event History
Jul 19, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-2454?
CVE-2022-2454 is classified as a medium severity vulnerability due to the potential for integer overflow or wraparound.
2
How do I fix CVE-2022-2454?
To fix CVE-2022-2454, update to a version of GPAC greater than 2.1-DEV or install the recommended security patches from Debian.
3
Which versions of GPAC are affected by CVE-2022-2454?
Versions of GPAC prior to 2.1-DEV, including those up to version 2.0.0, are affected by CVE-2022-2454.
4
What is the impact of CVE-2022-2454?
The impact of CVE-2022-2454 can lead to application crashes or unpredictable behavior due to integer overflow issues.
5
Is CVE-2022-2454 specific to any operating system?
CVE-2022-2454 primarily affects the GPAC application across different operating systems, particularly those using Debian packages.