CVE-2023-46427

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
09/03/2024
Last modified:
26/09/2025

Description

An issue was discovered in gpac version 2.3-DEV-rev588-g7edc40fee-master, allows remote attackers to execute arbitrary code, cause a denial of service (DoS), and obtain sensitive information via null pointer deference in gf_dash_setup_period component in media_tools/dash_client.c.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gpac:gpac:2.3-dev-rev588-g7edc40fee-master:*:*:*:*:*:*:*