cve/2021/CVE-2021-30022.md
2025-09-29 21:09:30 +02:00

769 B

CVE-2021-30022

Description

There is a integer overflow in media_tools/av_parsers.c in the gf_avc_read_pps_bs_internal in GPAC from 0.5.2 to 1.0.1. pps_id may be a negative number, so it will not return. However, avc->pps only has 255 unit, so there is an overflow, which results a crash.

POC

Reference

Github

No PoCs found on GitHub currently.