CVE-2023-47384: Medium severity gpac mp4box vulnerability
Published Nov 14, 2023
·Updated
MP4Box GPAC v2.3-DEV-rev617-g671976fcc-master was discovered to contain a memory leak in the function gfisomaddchapter at /isomedia/isomwrite.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.
Affected Software
1 affected component
Gpac GPAC=2.3-dev-rev617-g671976fcc-master
Event History
Nov 14, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2023-47384.
2
What software is affected by this vulnerability?
GPAC GPAC v2.3-DEV-rev617-g671976fcc-master is affected by this vulnerability.
3
What is the severity of CVE-2023-47384?
The severity of CVE-2023-47384 is medium with a CVSS score of 5.5.
4
How can this vulnerability be exploited?
This vulnerability can be exploited by a crafted MP4 file leading to a Denial of Service (DoS) attack.
5
Is there a fix available for this vulnerability?
A fix for this vulnerability may be provided by GPAC. Please refer to the reference link for more information.