Buffer Overflow Vulnerability in GPAC Multimedia Framework by GPAC
CVE-2024-22749

7.8HIGH

Key Information:

Vendor

Gpac

Status
Vendor
CVE Published:
25 January 2024

What is CVE-2024-22749?

The GPAC Multimedia Framework v2.3 has been found to have a buffer overflow vulnerability resulting from improper handling of functions within the source code. Specifically, the issue occurs in the gf_isom_new_generic_sample_description function in isomedia/isom_write.c at line 4577. This vulnerability could lead to potentially exploitable conditions that may allow an attacker to execute arbitrary code or cause a denial of service in applications that rely on GPAC for media processing. Developers and organizations using this version should take immediate action to mitigate the risks associated with this vulnerability.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.