Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-28300

Опубликовано: 14 апр. 2021
Источник: debian
EPSS Низкий

Описание

NULL Pointer Dereference in the "isomedia/track.c" module's "MergeTrack()" function of GPAC v0.5.2 allows attackers to execute arbitrary code or cause a Denial-of-Service (DoS) by uploading a malicious MP4 file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gpacfixed1.0.1+dfsg1-4package
gpacno-dsabusterpackage
gpacpostponedstretchpackage
ccextractorfixed0.93+ds2-1package
ccextractorno-dsabullseyepackage
ccextractorno-dsabusterpackage

Примечания

  • https://github.com/gpac/gpac/issues/1702

  • https://github.com/gpac/gpac/commit/c4a5109dad73abe25ad12d8d529a728ae98d78ca

EPSS

Процентиль: 76%
0.00944
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 5 лет назад

NULL Pointer Dereference in the "isomedia/track.c" module's "MergeTrack()" function of GPAC v0.5.2 allows attackers to execute arbitrary code or cause a Denial-of-Service (DoS) by uploading a malicious MP4 file.

CVSS3: 9.8
nvd
почти 5 лет назад

NULL Pointer Dereference in the "isomedia/track.c" module's "MergeTrack()" function of GPAC v0.5.2 allows attackers to execute arbitrary code or cause a Denial-of-Service (DoS) by uploading a malicious MP4 file.

github
больше 3 лет назад

NULL Pointer Dereference in the "isomedia/track.c" module's "MergeTrack()" function of GPAC v0.5.2 allows attackers to execute arbitrary code or cause a Denial-of-Service (DoS) by uploading a malicious MP4 file.

EPSS

Процентиль: 76%
0.00944
Низкий