CVE-2023-4721
published 2023-09-01CVE-2023-4721: Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
PriorityP416medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
0.29%
21.5th percentile
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | gpac | — | — |
| gpac | gpac | < 2.3-dev | 2.3-dev |
| gpac | gpac_gpac | >= unspecified < 2.3-DEV | 2.3-DEV |
| linux | linux_kernel | >= 5.12.0 < 5.15.127 | 5.15.127 |
| linux | linux_kernel | >= 5.16.0 < 6.1.46 | 6.1.46 |
| linux | linux_kernel | >= 6.2.0 < 6.4.11 | 6.4.11 |
CVSS provenance
nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv3.05.9MEDIUMCVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat4.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2023-4721: gpac - Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
vendor_debian·2023·CVSS 5.5
CVE-2023-4721 [MEDIUM] CVE-2023-4721: gpac - Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
Scope: local
bullseye: open
OSV
net: core: remove unnecessary frame_sz check in bpf_xdp_adjust_tail()
osv·2025-12-24
CVE-2023-54155 net: core: remove unnecessary frame_sz check in bpf_xdp_adjust_tail()
net: core: remove unnecessary frame_sz check in bpf_xdp_adjust_tail()
In the Linux kernel, the following vulnerability has been resolved:
net: core: remove unnecessary frame_sz check in bpf_xdp_adjust_tail()
Syzkaller reported the following issue:
Too BIG xdp->frame_sz = 131072
WARNING: CPU: 0 PID: 5020 at net/core/filter.c:4121
____bpf_xdp_adjust_tail net/core/filter.c:4121 [inline]
WARNING: CPU: 0 PID: 5020 at net/core/filter.c:4121
bpf_xdp_adjust_tail+0x466/0xa10 net/core/filter.c:4103
...
Call Trace:
bpf_prog_4add87e5301a4105+0x1a/0x1c
__bpf_prog_run include/linux/filter.h:600 [inline]
bpf_prog_run_xdp include/linux/filter.h:775 [inline]
bpf_prog_run_generic_xdp+0x57e/0x11e0 net/core/dev.c:4721
netif_receive_generic_xdp net/core/dev.c:4807 [inline]
do_xdp_generic+0x35c/0x770 net/co
OSV
CVE-2023-4721: Out-of-bounds Read in GitHub repository gpac/gpac prior to 2
osv·2023-09-01·CVSS 5.5
CVE-2023-4721 [MEDIUM] CVE-2023-4721: Out-of-bounds Read in GitHub repository gpac/gpac prior to 2
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
GHSA
GHSA-gfjc-h3w7-h2j9: Out-of-bounds Read in GitHub repository gpac/gpac prior to 2
ghsa_unreviewed·2023-09-01
CVE-2023-4721 [MEDIUM] CWE-125 GHSA-gfjc-h3w7-h2j9: Out-of-bounds Read in GitHub repository gpac/gpac prior to 2
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2023-09-01
Published