First published: Thu Jan 05 2023(Updated: )
GPAC MP4box 2.1-DEV-rev574-g9d5bb184b is vulnerable to Buffer overflow in hevc_parse_vps_extension function of media_tools/av_parsers.c
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/gpac | <=0.5.2-426-gc5ad4e4+dfsg5-5 | 1.0.1+dfsg1-4+deb11u3 2.2.1+dfsg1-3 |
GPAC GPAC | <2.2.0 | |
<2.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-47095 is high.
GPAC MP4box versions up to and inclusive of 2.1-DEV-rev574-g9d5bb184b are affected by CVE-2022-47095.
Upgrade GPAC MP4box to version 1.0.1+dfsg1-4+deb11u3 or later to fix CVE-2022-47095.
The CWE ID for CVE-2022-47095 is CWE-119.
You can find more information about CVE-2022-47095 in the following references: [link1], [link2], [link3].