GPAC 1.0.1 is affected by a stack-based buffer overflow through MP4Box.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://huntr.dev/bounties/1d9bf402-f756-4583-9a1d-436722609c1e/ | third party advisory exploit |
https://github.com/gpac/gpac/issues/2058 | issue tracking exploit third party advisory |