Related Vulnerabilities: CVE-2020-23931  

An issue was discovered in gpac before 1.0.1. The abst_box_read function in box_code_adobe.c has a heap-based buffer over-read.

Severity Medium

Remote No

Type Information disclosure

Description

An issue was discovered in gpac before 1.0.1. The abst_box_read function in box_code_adobe.c has a heap-based buffer over-read.

AVG-1856 gpac 1:1.0.0-1 1:1.0.1-1 Medium Fixed

https://github.com/gpac/gpac/issues/1564
https://github.com/gpac/gpac/issues/1567
https://github.com/gpac/gpac/commit/093283e727f396130651280609e687cd4778e0d1