Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-1452

Опубликовано: 17 мар. 2023
Источник: debian
EPSS Низкий

Описание

A vulnerability was found in GPAC 2.3-DEV-rev35-gbbca86917-master. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file filters/load_text.c. The manipulation leads to buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The identifier VDB-223297 was assigned to this vulnerability.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gpacfixed2.2.1+dfsg1-1experimentalpackage
gpacfixed2.2.1+dfsg1-2package
gpacend-of-lifebusterpackage

Примечания

  • https://github.com/gpac/gpac/issues/2386

  • https://github.com/gpac/gpac/commit/a5efec8187de02d1f0a412140b0bf030a6747d3f

  • https://github.com/gpac/gpac/commit/6d6c4533ca7004f76d524129b52bda241dc231b5 (v2.2.1)

EPSS

Процентиль: 7%
0.0003
Низкий

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 2 лет назад

A vulnerability was found in GPAC 2.3-DEV-rev35-gbbca86917-master. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file filters/load_text.c. The manipulation leads to buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The identifier VDB-223297 was assigned to this vulnerability.

CVSS3: 5.3
nvd
больше 2 лет назад

A vulnerability was found in GPAC 2.3-DEV-rev35-gbbca86917-master. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file filters/load_text.c. The manipulation leads to buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The identifier VDB-223297 was assigned to this vulnerability.

CVSS3: 7.8
github
больше 2 лет назад

A vulnerability was found in GPAC 2.3-DEV-rev35-gbbca86917-master. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file filters/load_text.c. The manipulation leads to buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The identifier VDB-223297 was assigned to this vulnerability.

CVSS3: 7.8
fstec
больше 2 лет назад

Уязвимость функции файла filter/load_text.c мультимедийной платформы GPAC, позволяющая нарушителю переполненить буфера памяти

CVSS3: 8.8
redos
11 месяцев назад

Множественные уязвимости gpac

EPSS

Процентиль: 7%
0.0003
Низкий