VYPR
Medium severity5.5NVD Advisory· Published Jul 21, 2021· Updated Jun 17, 2026

CVE-2020-19481

CVE-2020-19481

Description

An issue was discovered in GPAC before 0.8.0, as demonstrated by MP4Box. It contains an invalid memory read in gf_m2ts_process_pmt in media_tools/mpegts.c that can cause a denial of service via a crafted MP4 file.

Affected products

4
  • Gpac/Gpac2 versions
    cpe:2.3:a:gpac:gpac:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:gpac:gpac:*:*:*:*:*:*:*:*range: <0.8.0
    • (no CPE)range: <0.8.0
  • GPAC/MP4Boxdescription
  • Gpac/MP4Boxllm-fuzzy
    Range: <0.8.0

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.