CVE-2023-23144: Integer Overflow
Published Jan 20, 2023
·Updated
Integer overflow vulnerability in function QDecCoordOnUnitSphere file bifs/unquantize.c in GPAC version 2.2-rev0-gab012bbfb-master.
Affected Software
2 affected componentsFixes available
debian/gpac<=0.5.2-426-gc5ad4e4+dfsg5-5, <=2.2.1+dfsg1-3
1.0.1+dfsg1-4+deb11u3
Gpac GPAC=2.2-rev0-gab012bbfb-master
Remediation
Event History
Jan 20, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-23144?
CVE-2023-23144 is an integer overflow vulnerability in the GPAC software.
2
How does CVE-2023-23144 affect GPAC?
CVE-2023-23144 affects GPAC version 2.2-rev0-gab012bbfb-master.
3
What is the severity of CVE-2023-23144?
The severity of CVE-2023-23144 is medium with a CVSS score of 5.5.
4
How can I fix CVE-2023-23144?
To fix CVE-2023-23144, it is recommended to update GPAC to version 2.2-rev0-gab012bbfb-master or apply the provided patches.
5
Where can I find more information about CVE-2023-23144?
You can find more information about CVE-2023-23144 in the references provided, including the GitHub commit and Debian security advisories.