Vulnerabilities > CVE-2021-40944 - NULL Pointer Dereference vulnerability in Gpac 1.1.0

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
local
low complexity
gpac
CWE-476

Summary

In GPAC MP4Box 1.1.0, there is a Null pointer reference in the function gf_filter_pid_get_packet function in src/filter_core/filter_pid.c:5394, as demonstrated by GPAC. This can cause a denial of service (DOS).

Vulnerable Configurations

Part Description Count
Application
Gpac
1

Common Weakness Enumeration (CWE)