cve/2023/CVE-2023-50120.md
2024-06-18 02:51:15 +02:00

18 lines
707 B
Markdown

### [CVE-2023-50120](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-50120)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
MP4Box GPAC version 2.3-DEV-rev636-gfbd7e13aa-master was discovered to contain an infinite loop in the function av1_uvlc at media_tools/av_parsers.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.
### POC
#### Reference
- https://github.com/gpac/gpac/issues/2698
#### Github
No PoCs found on GitHub currently.