NULL Pointer Dereference in the isomedia/track.c modules MergeTrack() function of GPAC v0.5.2 allows attackers to execute arbitrary code or cause a Denial-of-Service (DoS) by uploading a malicious MP4 file.
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gpac | Gpac | 0.5.2 (including) | 0.5.2 (including) |
Gpac | Ubuntu | bionic | * |
Gpac | Ubuntu | esm-apps/bionic | * |
Gpac | Ubuntu | esm-apps/focal | * |
Gpac | Ubuntu | esm-apps/jammy | * |
Gpac | Ubuntu | esm-apps/noble | * |
Gpac | Ubuntu | esm-apps/xenial | * |
Gpac | Ubuntu | esm-infra-legacy/trusty | * |
Gpac | Ubuntu | focal | * |
Gpac | Ubuntu | groovy | * |
Gpac | Ubuntu | hirsute | * |
Gpac | Ubuntu | impish | * |
Gpac | Ubuntu | jammy | * |
Gpac | Ubuntu | kinetic | * |
Gpac | Ubuntu | lunar | * |
Gpac | Ubuntu | noble | * |
Gpac | Ubuntu | trusty | * |
Gpac | Ubuntu | trusty/esm | * |
Gpac | Ubuntu | xenial | * |