Memory leak in the gfisomgetrootod function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.
[ { "source": "https://github.com/gpac/gpac/commit/984787de3d414a5f7d43d0b4584d9469dff2a5a5", "target": { "function": "gf_isom_get_root_od", "file": "src/isomedia/isom_read.c" }, "signature_type": "Function", "deprecated": false, "digest": { "function_hash": "168412334617274074692376637243074263681", "length": 3223.0 }, "id": "CVE-2021-33365-358a803a", "signature_version": "v1" }, { "source": "https://github.com/gpac/gpac/commit/984787de3d414a5f7d43d0b4584d9469dff2a5a5", "target": { "file": "src/isomedia/isom_read.c" }, "signature_type": "Line", "deprecated": false, "digest": { "line_hashes": [ "61909450481355956582745182997005046873", "80944370557771187793073806081845294962", "298153751848230884633594399017988823175", "328463344418972599469480747188390936246" ], "threshold": 0.9 }, "id": "CVE-2021-33365-a04ba60c", "signature_version": "v1" } ]