VYPR
Critical severity9.8NVD Advisory· Published Apr 14, 2021· Updated Jun 17, 2026

CVE-2021-28300

CVE-2021-28300

Description

NULL Pointer Dereference in the "isomedia/track.c" module's "MergeTrack()" function of GPAC v0.5.2 allows attackers to execute arbitrary code or cause a Denial-of-Service (DoS) by uploading a malicious MP4 file.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Gpac/Gpac2 versions
    cpe:2.3:a:gpac:gpac:0.5.2:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:gpac:gpac:0.5.2:*:*:*:*:*:*:*
    • (no CPE)range: =0.5.2
  • GPAC/GPACdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.