First published: Mon Feb 13 2023(Updated: )
Off-by-one Error in GitHub repository gpac/gpac prior to v2.3.0-DEV.
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
debian/gpac | <=0.5.2-426-gc5ad4e4+dfsg5-5 | 1.0.1+dfsg1-4+deb11u3 2.2.1+dfsg1-3 |
GPAC | <2.3.0-dev |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-0818 is an off-by-one error in the GitHub repository gpac/gpac prior to v2.3.0-DEV.
The affected software includes the gpac package versions 0.5.2-426-gc5ad4e4+dfsg5-5, 1.0.1+dfsg1-4+deb11u3, and 2.2.1+dfsg1-3, as well as GPAC versions up to but excluding 2.3.0-dev.
CVE-2023-0818 has a severity rating of high, with a severity value of 5.5.
To fix CVE-2023-0818, it is recommended to update to version v2.3.0-DEV or later of the gpac/gpac repository.
You can find more information about CVE-2023-0818 in the following references: [GitHub commit](https://github.com/gpac/gpac/commit/377ab25f3e502db2934a9cf4b54739e1c89a02ff), [Huntr.dev](https://huntr.dev/bounties/038e7472-f3e9-46c2-9aea-d6dafb62a18a), [Debian DSA-5411](https://www.debian.org/security/2023/dsa-5411).