CVE-2021-46237NULL Pointer Dereference in Gpac

Severity
5.5MEDIUMNVD
EPSS
0.1%
top 66.47%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 21
Latest updateJan 22

Description

An untrusted pointer dereference vulnerability exists in GPAC v1.1.0 via the function gf_node_unregister () at scenegraph/base_scenegraph.c. This vulnerability can lead to a Denial of Service (DoS).

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

Affected Packages2 packages

NVDgpac/gpac1.1.0
debiandebian/gpac

Patches

🔴Vulnerability Details

2
GHSA
GHSA-8fqp-54rg-gv75: An untrusted pointer dereference vulnerability exists in GPAC v12022-01-22
OSV
CVE-2021-46237: An untrusted pointer dereference vulnerability exists in GPAC v12022-01-21

📋Vendor Advisories

1
Debian
CVE-2021-46237: gpac - An untrusted pointer dereference vulnerability exists in GPAC v1.1.0 via the fun...2021
CVE-2021-46237 — NULL Pointer Dereference in Gpac | cvebase