CVE-2018-7752 (NVD)

2018-03-07

GPAC through 0.7.1 has a Buffer Overflow in the gf_media_avc_read_sps function in media_tools/av_parsers.c, a different vulnerability than CVE-2018-1000100.

Products Ubuntu_linux, Debian_linux, Gpac
Type Improper Restriction of Operations within the Bounds of a Memory Buffer (CWE-119)
First patch https://github.com/gpac/gpac/commit/90dc7f853d31b0a4e9441cba97feccf36d8b69a4
Relevant file/s • ./include/gpac/tools.h (modified, +1)
• ./src/isomedia/avc_ext.c (modified, +2)
• ./src/media_tools/av_parsers.c (modified, +4)
Links https://usn.ubuntu.com/3926-1/
https://github.com/gpac/gpac/issues/997
https://lists.debian.org/debian-lts-announce/2019/02/msg00040.html

gpac - Tree: 90dc7f853d

(? files)

Filter Settings
Files
Navigation
Patch data:

(on by default)


Patched area: