CVE-2018-21015
PoC —CVSS 3.1
6.5 medium
EPSS
1%p71
Published
()
Modified
Description
AVC_DuplicateConfig() at isomedia/avc_ext.c in GPAC 0.7.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file. There is "cfg_new->AVCLevelIndication = cfg->AVCLevelIndication;" but cfg could be NULL.
In the news0 stories
No ingested article mentions this CVE yet.