CVE-2023-46427: Null Pointer Dereference
An issue was discovered in gpac version 2.3-DEV-rev588-g7edc40fee-master, allows remote attackers to execute arbitrary code, cause a denial of service (DoS), and obtain sensitive information via null pointer deference in gfdashsetupperiod component in mediatools/dashclient.c.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-46427?
CVE-2023-46427 has been classified as having a high severity due to its potential for remote code execution and denial of service.
How do I fix CVE-2023-46427?
To fix CVE-2023-46427, you should update to the latest patched version of GPAC.
What components are affected by CVE-2023-46427?
CVE-2023-46427 specifically affects the gf_dash_setup_period component in media_tools/dash_client.c.
Can CVE-2023-46427 lead to data breaches?
Yes, CVE-2023-46427 can allow remote attackers to obtain sensitive information, increasing the risk of data breaches.
What techniques are exploited in CVE-2023-46427?
CVE-2023-46427 exploits a null pointer deference which can result in arbitrary code execution.