High severity7.8OSV Advisory· Published Feb 6, 2019· Updated Jun 17, 2026
CVE-2018-20762
CVE-2018-20762
Description
GPAC version 0.7.1 and earlier has a buffer overflow vulnerability in the cat_multiple_files function in applications/mp4box/fileimport.c when MP4Box is used for a local directory containing crafted filenames.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
8cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*+ 2 more
- cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:lts:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:18.10:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
4- github.com/gpac/gpac/commit/35ab4475a7df9b2a4bcab235e379c0c3ec543658nvdPatchThird Party Advisory
- github.com/gpac/gpac/issues/1187nvdExploitThird Party Advisory
- lists.debian.org/debian-lts-announce/2019/02/msg00040.htmlnvdMailing ListThird Party Advisory
- usn.ubuntu.com/3926-1/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.