CVE-2023-4679

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Nov 15, 2024
CWE ID 89

Summary

CVE-2023-4679 is a use-after-free vulnerability affecting GPAC version 2.3-DEV-revrelease. This issue is located in the gf_filterpacket_del function of filter_core/filter.c at line 38. The vulnerability results in a double-free condition, increasing the risk of application crashes. Attackers may exploit this bug to execute arbitrary code or cause denial-of-service attacks. It is crucial for users to update their GPAC installations to a patched version to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share