CVE-2023-39562: Use After Free
Published Aug 28, 2023
·Updated
GPAC v2.3-DEV-rev449-g5948e4f70-master was discovered to contain a heap-use-after-free via the gfbsalign function at bitstream.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via supplying a crafted file.
Affected Software
1 affected component
Gpac GPAC=2.3-2.3-dev-rev449-g5948e4f70-master
Event History
Aug 28, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this GPAC vulnerability?
The vulnerability ID is CVE-2023-39562.
2
What is the severity of CVE-2023-39562?
The severity of CVE-2023-39562 is medium with a severity value of 5.5.
3
What is the affected software of CVE-2023-39562?
The affected software is GPAC v2.3-DEV-rev449-g5948e4f70-master with version 2.3-2.3-dev-rev449-g5948e4f70-master.
4
How does CVE-2023-39562 impact the system?
CVE-2023-39562 allows attackers to cause a Denial of Service (DoS) by supplying a crafted file.
5
Is there a fix available for CVE-2023-39562?
At the moment, there is no known fix or patch available for CVE-2023-39562. It is recommended to monitor the vendor's website for updates.