CVE-2024-24267
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Feb 5, 2024
Updated: May 28, 2024
CWE ID 401
Summary
CVE-2024-24267 is a newly discovered memory leak vulnerability affecting gpac v2.2.1. The issue is located in the gf_fileio_from_blob function, where the gfio_blob variable is handled. This vulnerability may allow an attacker to exhaust system resources by causing the application to leak memory. Exploitation of this vulnerability could lead to denial-of-service conditions, potentially impacting the availability of critical systems or applications. It is recommended that users upgrade to a patched version of gpac as soon as possible to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Vendors
- GPAC