PT-2024-6392 · Gpac+2 · Gpac+2

·

CVE-2024-24267

·

Published

2024-02-05

·

Updated

2025-09-26

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions gpac version 2.2.1
Description The issue is related to a memory leak in the gf fileio from blob function, specifically via the gfio blob variable. This can be exploited by a remote attacker to cause a denial of service. The memory leak is due to the lack of memory release after its effective term of service.
Recommendations For gpac version 2.2.1, consider disabling the gf fileio from blob function as a temporary workaround until a patch is available. Restrict access to the gfio blob variable to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Memory Leak

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2024-07446
CVE-2024-24267

Affected Products

Debian
Red Os
Gpac