CVE-2023-0841
GPAC reframe_mp3.c mp3_dmx_process heap-based overflow
A vulnerability, which was classified as critical, has been found in GPAC 2.3-DEV-rev40-g3602a5ded. This issue affects the function mp3_dmx_process of the file filters/reframe_mp3.c. The manipulation leads to heap-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-221087.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:L
Affected products
n/a · GPACWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
https://github.com/advisories/GHSA-w52x-cp47-xhhwhttps://github.com/gpac/gpac/commit/851560e3dc8155d45ace4b0d77421f241ed71dc4https://github.com/gpac/gpac/issues/2396https://github.com/gpac/gpac/releases/tag/v2.2.1https://github.com/qianshuidewajueji/poc/blob/main/gpac/mp3_dmx_process_poc3https://vuldb.com/?ctiid.221087https://vuldb.com/?id.221087