The binary MP4Box in Gpac 1.0.1 has a double-free vulnerability in the gf_list_del function in list.c, which allows attackers to cause a denial of service.
References
Link Resource
https://github.com/gpac/gpac/commit/b03c9f252526bb42fbd1b87b9f5e339c3cf2390a Patch Third Party Advisory
https://github.com/gpac/gpac/issues/1891 Exploit Issue Tracking Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-01-13T18:05:25

Updated: 2022-01-13T18:05:25

Reserved: 2021-09-07T00:00:00


Link: CVE-2021-40573

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-01-13T19:15:08.267

Modified: 2022-01-14T16:37:25.207


Link: CVE-2021-40573

JSON object: View

cve-icon Redhat Information

No data.

CWE