CVE-2023-5595

Source
https://nvd.nist.gov/vuln/detail/CVE-2023-5595
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-5595.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-5595
Downstream
Published
2023-10-16T09:15:12Z
Modified
2025-10-21T17:12:47.969200Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

Denial of Service in GitHub repository gpac/gpac prior to 2.3.0-DEV.

References

Affected packages

Git / github.com/gpac/gpac

Affected ranges

Type
GIT
Repo
https://github.com/gpac/gpac
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

v0.*

v0.5.2
v0.6.0
v0.6.1
v0.7.0
v0.7.1
v0.8.0
v0.9.0
v0.9.0-preview

v1.*

v1.0.0
v1.0.1

v2.*

v2.0.0
v2.2.0

Database specific

vanir_signatures

[
    {
        "source": "https://github.com/gpac/gpac/commit/7a6f636db3360bb16d18078d51e8c596f31302a1",
        "target": {
            "file": "src/isomedia/media.c"
        },
        "id": "CVE-2023-5595-18a80e9f",
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "208936068941273071447337337443878089284",
                "66953139143674800397449008452471316414",
                "241404618965639416523994108531585693332",
                "104616351320096267908767319863515143862",
                "300589157539575044756107240167147386375",
                "270012005443187728012353051895573944211",
                "127721739931591448209106175277816353370"
            ],
            "threshold": 0.9
        },
        "signature_version": "v1",
        "signature_type": "Line"
    },
    {
        "source": "https://github.com/gpac/gpac/commit/7a6f636db3360bb16d18078d51e8c596f31302a1",
        "target": {
            "file": "src/isomedia/tx3g.c"
        },
        "id": "CVE-2023-5595-2012ee10",
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "152976312512042621609510122632271869200",
                "281110955539741508365450478481948629319",
                "283998398071437767301632563328958075952",
                "269001185067584722402043476548538087327",
                "254595250668608963716947288795962892691",
                "61803721861027287287165895890916799523",
                "282520382676946375255351986667774116927",
                "97643777190363300410960496579744391101",
                "215126807060003219956142668934917438222",
                "241372923552494393452903759054730449698",
                "120605330912786473074934618867679364356",
                "269027913531216558551063048348607400726",
                "109691004948694365973757085642710213950",
                "120202673379034997272667754049727118038",
                "155710435753500000080071300060316573175"
            ],
            "threshold": 0.9
        },
        "signature_version": "v1",
        "signature_type": "Line"
    },
    {
        "source": "https://github.com/gpac/gpac/commit/7a6f636db3360bb16d18078d51e8c596f31302a1",
        "target": {
            "function": "Media_GetESD",
            "file": "src/isomedia/media.c"
        },
        "id": "CVE-2023-5595-24219399",
        "deprecated": false,
        "digest": {
            "function_hash": "180978022907838842470784643864777636434",
            "length": 9920.0
        },
        "signature_version": "v1",
        "signature_type": "Function"
    },
    {
        "source": "https://github.com/gpac/gpac/commit/7a6f636db3360bb16d18078d51e8c596f31302a1",
        "target": {
            "file": "src/filters/isoffin_load.c"
        },
        "id": "CVE-2023-5595-4c519026",
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "10151621203401512757433481852470569472",
                "200530731157876815340650546998049342915",
                "12966624068894348513511683695625498448",
                "232565277941771591210999360063206489497",
                "293087083732431568272632404247282909614",
                "316281121831771472666824468169036503728",
                "257944560354782642765751136758389790055",
                "20520670907031457630359045383926251602",
                "174666464381843743538177192079623596979",
                "286663103577027317907796316644452282009",
                "245342876655415446266708956366965975448",
                "297797263176144988261848290828235630130",
                "128749503542867351406027544252829378921",
                "126127374060479259260256313004604290222"
            ],
            "threshold": 0.9
        },
        "signature_version": "v1",
        "signature_type": "Line"
    },
    {
        "source": "https://github.com/gpac/gpac/commit/7a6f636db3360bb16d18078d51e8c596f31302a1",
        "target": {
            "file": "src/filters/mux_isom.c"
        },
        "id": "CVE-2023-5595-90906f6f",
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "145430894066490721327253216173449321329",
                "97364990716085504220148183789186920328",
                "146413133842705769631805049755243596302",
                "106162063443701276445154147570854650210",
                "3931433963034187004796089262963669926",
                "16228715379897721906520600215491034189",
                "225746268476545977499608175811498458176",
                "178050191228598180931116847425486526712",
                "29554133764687676083497322358741834189",
                "339917481080273599894338323506767795377",
                "159995164078637318002668434031861033904",
                "12257014520478152957290614889257977174",
                "280743713140371733590519785410398823843",
                "286297973820756641153694418174062561416",
                "167635517758547871593266064917624020820",
                "239311186532868020022681289308647682621",
                "310816605137873852793928594522326844866",
                "11333756410851050954352720185536374325",
                "33963552880375405573159449666409216522",
                "206578366171768167442316602228842762543",
                "48968287807872706378999175697648393430",
                "212625941402786598296220203462176383824",
                "191573293737190246127000783466434065458",
                "141161998339818507285932225386453287821",
                "241500669375590803036451651164918946860",
                "51877770695867133251088053159239471858",
                "223168233217659263498690332891322379527",
                "204161186889467763911472957580818304201",
                "293964287574396313582944986466341121474"
            ],
            "threshold": 0.9
        },
        "signature_version": "v1",
        "signature_type": "Line"
    },
    {
        "source": "https://github.com/gpac/gpac/commit/7a6f636db3360bb16d18078d51e8c596f31302a1",
        "target": {
            "function": "mp4_mux_setup_pid",
            "file": "src/filters/mux_isom.c"
        },
        "id": "CVE-2023-5595-a61bfa00",
        "deprecated": false,
        "digest": {
            "function_hash": "121106853071229441505150270366423262523",
            "length": 91724.0
        },
        "signature_version": "v1",
        "signature_type": "Function"
    },
    {
        "source": "https://github.com/gpac/gpac/commit/7a6f636db3360bb16d18078d51e8c596f31302a1",
        "target": {
            "function": "gf_isom_parse_text_sample",
            "file": "src/isomedia/tx3g.c"
        },
        "id": "CVE-2023-5595-ad662477",
        "deprecated": false,
        "digest": {
            "function_hash": "132749271254960328041617768404466743368",
            "length": 1961.0
        },
        "signature_version": "v1",
        "signature_type": "Function"
    },
    {
        "source": "https://github.com/gpac/gpac/commit/7a6f636db3360bb16d18078d51e8c596f31302a1",
        "target": {
            "function": "gf_isom_get_text_description",
            "file": "src/isomedia/tx3g.c"
        },
        "id": "CVE-2023-5595-b84bd531",
        "deprecated": false,
        "digest": {
            "function_hash": "132788694655326809495764008471863184020",
            "length": 2328.0
        },
        "signature_version": "v1",
        "signature_type": "Function"
    },
    {
        "source": "https://github.com/gpac/gpac/commit/7a6f636db3360bb16d18078d51e8c596f31302a1",
        "target": {
            "function": "isor_get_chapters",
            "file": "src/filters/isoffin_load.c"
        },
        "id": "CVE-2023-5595-b87d45d0",
        "deprecated": false,
        "digest": {
            "function_hash": "247413978171594276186507730312903635602",
            "length": 1933.0
        },
        "signature_version": "v1",
        "signature_type": "Function"
    }
]