Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-30976

GPAC 2.0.0 misuses a certain Unicode utf8_wcslen (renamed gf_utf8_wcslen) function in utils/utf.c, resulting in a heap-based buffer over-read, as demonstrated by MP4Box.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 45.4%
CVSS Severity
CVSS v3 Score 7.1
CVSS v2 Score 4.0
Products affected by CVE-2022-30976
  • Gpac » Gpac » Version: 2.0.0
    cpe:2.3:a:gpac:gpac:2.0.0


Contact Us

Shodan ® - All rights reserved