CVE-2022-43040: Buffer Overflow
Published Oct 19, 2022
·Updated
GPAC 2.1-DEV-rev368-gfd054169b-master was discovered to contain a heap buffer overflow via the function gfisomboxdumpstartex at /isomedia/boxfuncs.c.
Affected Software
1 affected component
Gpac GPAC<2.2.0
Event History
Oct 19, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-43040?
CVE-2022-43040 is classified as a high severity vulnerability due to the potential for exploitation via a heap buffer overflow.
2
How do I fix CVE-2022-43040?
To fix CVE-2022-43040, update GPAC to version 2.2.0 or later where the vulnerability is addressed.
3
What software versions are affected by CVE-2022-43040?
CVE-2022-43040 affects GPAC versions prior to 2.2.0.
4
What type of vulnerability is CVE-2022-43040?
CVE-2022-43040 is a heap buffer overflow vulnerability located in the function gf_isom_box_dump_start_ex.
5
Is CVE-2022-43040 remotely exploitable?
Yes, CVE-2022-43040 could potentially be exploited remotely due to its nature as a buffer overflow vulnerability.