CVE-2021-30015

Name
CVE-2021-30015
Description
There is a Null Pointer Dereference in function filter_core/filter_pck.c:gf_filter_pck_new_alloc_internal in GPAC 1.0.1. The pid comes from function av1dmx_parse_flush_sample, the ctx.opid maybe NULL. The result is a crash in gf_filter_pck_new_alloc_internal.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Patch https://github.com/gpac/gpac/commit/13dad7d5ef74ca2e6fe4010f5b03eb12e9bbe0ec
Exploit https://github.com/gpac/gpac/issues/1719

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:gpac:gpac:1.0.1:*:*:*:*:*:*:* gpac == None == 1.0.1

Vulnerable and fixed packages

Source package Branch Version Maintainer Status