CVE-2020-16159

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
19/10/2020
Last modified:
29/10/2020

Description

GoPro gpmf-parser 1.5 has a heap out-of-bounds read and segfault in GPMF_ScaledData(). Parsing malicious input can result in a crash or information disclosure.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gopro:gpmf-parser:1.5:*:*:*:*:*:*:*