Vulnerabilities > CVE-2021-45263 - Use After Free vulnerability in Gpac 1.1.0

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
local
low complexity
gpac
CWE-416

Summary

An invalid free vulnerability exists in gpac 1.1.0 via the gf_svg_delete_attribute_value function, which causes a segmentation fault and application crash.

Vulnerable Configurations

Part Description Count
Application
Gpac
1

Common Weakness Enumeration (CWE)