A stack-buffer-overflow occurs in Atomicparsley 20210124.204813.840499f through APar_readX() in src/util.cpp while parsing a crafted mp4 file because of the missing boundary check.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://github.com/wez/atomicparsley/issues/30 | exploit third party advisory patch |
https://github.com/wez/atomicparsley/pull/31#issue-687280335 | third party advisory |
https://security.gentoo.org/glsa/202305-01 | vendor advisory |