Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jqgc-m9mv-xqwm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

There is a integer overflow in media_tools/av_parsers.c in the gf_avc_read_pps_bs_internal in GPAC 1.0.1. pps_id may be a negative number, so it will not return. However, avc->pps only has 255 unit, so there is an overflow, which results a crash.

There is a integer overflow in media_tools/av_parsers.c in the gf_avc_read_pps_bs_internal in GPAC 1.0.1. pps_id may be a negative number, so it will not return. However, avc->pps only has 255 unit, so there is an overflow, which results a crash.

EPSS

Процентиль: 26%
0.0009
Низкий

Дефекты

CWE-190

Связанные уязвимости

CVSS3: 5.5
ubuntu
почти 5 лет назад

There is a integer overflow in media_tools/av_parsers.c in the gf_avc_read_pps_bs_internal in GPAC from 0.5.2 to 1.0.1. pps_id may be a negative number, so it will not return. However, avc->pps only has 255 unit, so there is an overflow, which results a crash.

CVSS3: 5.5
nvd
почти 5 лет назад

There is a integer overflow in media_tools/av_parsers.c in the gf_avc_read_pps_bs_internal in GPAC from 0.5.2 to 1.0.1. pps_id may be a negative number, so it will not return. However, avc->pps only has 255 unit, so there is an overflow, which results a crash.

CVSS3: 5.5
debian
почти 5 лет назад

There is a integer overflow in media_tools/av_parsers.c in the gf_avc_ ...

EPSS

Процентиль: 26%
0.0009
Низкий

Дефекты

CWE-190