USN-3926-1
Dashboard / Vulnerabilities / USN-3926-1
USN-3926-1
Summary: gpac vulnerabilities
Details: It was discovered that the GPAC MP4Box utility incorrectly handled certain memory operations. If an user or automated system were tricked into opening a specially crafted MP4 file, a remote attacker could use this issue to cause MP4Box to crash, resulting in a denial of service, or possibly execute arbitrary code.
References: https://ubuntu.com/security/notices/USN-3926-1, https://ubuntu.com/security/CVE-2018-7752, https://ubuntu.com/security/CVE-2018-13005, https://ubuntu.com/security/CVE-2018-13006, https://ubuntu.com/security/CVE-2018-20760, https://ubuntu.com/security/CVE-2018-20761, https://ubuntu.com/security/CVE-2018-20762, https://ubuntu.com/security/CVE-2018-20763, https://ubuntu.com/security/CVE-2018-1000100
Affected packages
Package
Name: gpac
Purl: pkg:deb/ubuntu/[email protected]+dfsg5-1ubuntu0.1?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
