CVE-2023-1654: Denial of Service in gpac/gpac
Published Mar 27, 2023
·Updated
Denial of Service in GitHub repository gpac/gpac prior to 2.4.0.
Affected Software
2 affected componentsFixes available
debian/gpac<=0.5.2-426-gc5ad4e4+dfsg5-5
1.0.1+dfsg1-4+deb11u32.2.1+dfsg1-3
Gpac GPAC<=2.2.0
Remediation
Event History
Mar 27, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-1654.
2
What is the title of the vulnerability?
The title of the vulnerability is 'Denial of Service in GitHub repository gpac/gpac prior to 2.4.0.'
3
What is the severity of the vulnerability?
The severity of the vulnerability is high, with a CVSS score of 7.8.
4
How can I fix the vulnerability?
To fix the vulnerability, update the GitHub repository gpac/gpac to version 2.4.0 or later.
5
Where can I find more information about the vulnerability?
You can find more information about the vulnerability in the following references: [Link 1](https://github.com/gpac/gpac/commit/2c055153d401b8c49422971e3a0159869652d3da), [Link 2](https://huntr.dev/bounties/33652b56-128f-41a7-afcc-10641f69ff14), [Link 3](https://www.debian.org/security/2023/dsa-5411).