CVE-2023-4683

Source
https://nvd.nist.gov/vuln/detail/CVE-2023-4683
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-4683.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-4683
Downstream
Published
2023-08-31T15:54:35.386Z
Modified
2025-12-05T00:09:46.547571Z
Severity
  • 5.3 (Medium) CVSS_V3 - CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L CVSS Calculator
Summary
NULL Pointer Dereference in gpac/gpac
Details

NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3-DEV.

Database specific
{
    "cwe_ids": [
        "CWE-476"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/4xxx/CVE-2023-4683.json",
    "cna_assigner": "@huntrdev"
}
References

Affected packages

Git / github.com/gpac/gpac

Affected ranges

Type
GIT
Repo
https://github.com/gpac/gpac
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

v0.*

v0.5.2
v0.6.0
v0.6.1
v0.7.0
v0.7.1
v0.8.0
v0.9.0
v0.9.0-preview

v1.*

v1.0.0
v1.0.1

v2.*

v2.0.0
v2.2.0

Database specific

vanir_signatures

[
    {
        "signature_version": "v1",
        "target": {
            "file": "src/utils/xml_parser.c"
        },
        "deprecated": false,
        "source": "https://github.com/gpac/gpac/commit/112767e8b178fc82dec3cf82a1ca14d802cdb8ec",
        "id": "CVE-2023-4683-0a9642bd",
        "signature_type": "Line",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "269917281445795391845398945273482853762",
                "104921330832380386759875967098951245906",
                "212317088535849920195989748030162934571",
                "46502609810644574215313959398881684558",
                "277034637417841303551935651045034802174",
                "218395779655233858416943353831926710887",
                "172619011957939265053699468500567426859",
                "202583220462516075748402956685864861466"
            ]
        }
    },
    {
        "signature_version": "v1",
        "target": {
            "file": "src/scene_manager/loader_bt.c",
            "function": "gf_bt_loader_run_intern"
        },
        "deprecated": false,
        "source": "https://github.com/gpac/gpac/commit/112767e8b178fc82dec3cf82a1ca14d802cdb8ec",
        "id": "CVE-2023-4683-27797ab0",
        "signature_type": "Function",
        "digest": {
            "function_hash": "306550612930637933098332660701709809522",
            "length": 7188.0
        }
    },
    {
        "signature_version": "v1",
        "target": {
            "file": "src/utils/xml_parser.c",
            "function": "gf_xml_sax_parse_intern"
        },
        "deprecated": false,
        "source": "https://github.com/gpac/gpac/commit/112767e8b178fc82dec3cf82a1ca14d802cdb8ec",
        "id": "CVE-2023-4683-5c98524a",
        "signature_type": "Function",
        "digest": {
            "function_hash": "23256753989373282930982996646987969774",
            "length": 1517.0
        }
    },
    {
        "signature_version": "v1",
        "target": {
            "file": "src/scene_manager/loader_bt.c"
        },
        "deprecated": false,
        "source": "https://github.com/gpac/gpac/commit/112767e8b178fc82dec3cf82a1ca14d802cdb8ec",
        "id": "CVE-2023-4683-cc94a355",
        "signature_type": "Line",
        "digest": {
            "threshold": 0.9,
            "line_hashes": [
                "160342669235061165201517725957313131279",
                "259417558603068457032513083703971365042",
                "95895391914531398680395163626384240396",
                "216817299294095575315667142355975577322"
            ]
        }
    }
]