GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a stack overflow via the hevc_parse_vps_extension function at /media_tools/av_parsers.c.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://github.com/gpac/gpac/issues/2613 | issue tracking exploit |
https://github.com/gpac/gpac/commit/66abf0887c89c29a484d9e65e70882794e9e3a1b | patch |