GPAC version 2.3-DEV-rev602-ged8424300-master in MP4Box contains a memory leak in NewSFDouble scenegraph/vrml_tools.c:300. This vulnerability may lead to a denial of service.
References
Link | Resource |
---|---|
https://gist.github.com/ReturnHere/d0899bb03b8f5e8fae118f2b76888486 | Exploit Third Party Advisory |
https://github.com/gpac/gpac/issues/2658 | Exploit Issue Tracking Patch Third Party Advisory |
Configurations
History
No history.
Information
Published : 2023-12-07 18:15
Updated : 2023-12-12 20:19
NVD link : CVE-2023-46871
Mitre link : CVE-2023-46871
CVE.ORG link : CVE-2023-46871
JSON object : View
Products Affected
gpac
- gpac
CWE
CWE-401
Missing Release of Memory after Effective Lifetime