CVE-2021-4043

Published Feb 4, 2022

Last updated 9 days ago

Overview

Description
NULL Pointer Dereference in GitHub repository gpac/gpac prior to 1.1.0.
Source
security@huntr.dev
NVD status
Analyzed

Risk scores

CVSS 3.1

Type
Primary
Base score
5.5
Impact score
3.6
Exploitability score
1.8
Vector string
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Severity
MEDIUM

CVSS 3.0

Type
Secondary
Base score
5.8
Impact score
1.4
Exploitability score
3.9
Vector string
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:L
Severity
MEDIUM

CVSS 2.0

Type
Primary
Base score
4.3
Impact score
2.9
Exploitability score
8.6
Vector string
AV:N/AC:M/Au:N/C:N/I:N/A:P

Known exploits

Data from CISA

Vulnerability name
Motion Spell GPAC Null Pointer Dereference Vulnerability
Exploit added on
Sep 30, 2024
Exploit action due
Oct 21, 2024
Required action
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

Weaknesses

security@huntr.dev
CWE-476

Social media

Hype score
Not currently trending

Configurations