CVE-2023-41000: Use After Free
Published Sep 11, 2023
·Updated
GPAC through 2.2.1 has a use-after-free vulnerability in the function gfbifsflushcommandlist in bifs/memorydecoder.c.
Affected Software
1 affected component
Gpac GPAC<=2.2.1
Remediation
Patch Available
Event History
Sep 11, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this GPAC vulnerability?
The vulnerability ID for this GPAC vulnerability is CVE-2023-41000.
2
What is the title of this GPAC vulnerability?
The title of this GPAC vulnerability is 'GPAC through 2.2.1 has a use-after-free vulnerability in the function gf_bifs_flush_command_list in bifs/memory_decoder.c.'
3
What is the severity rating of CVE-2023-41000?
The severity rating of CVE-2023-41000 is medium.
4
How is the GPAC software affected by this vulnerability?
GPAC software versions up to and including 2.2.1 are affected by this vulnerability.
5
Is there a fix available for CVE-2023-41000?
At the moment, there is no fix available for CVE-2023-41000. It is recommended to follow the official GPAC website or GitHub repository for updates on fixes.