CVE-2023-5586

CVSS 3.1 Score 7.8 of 10 (high)

Details

Published Oct 15, 2023
Updated: Oct 19, 2023
CWE ID 476

Summary

CVE-2023-5586 is a critical vulnerability affecting the gpac/gpac GitHub repository before version 2.3.0-DEV. This issue involves a NULL Pointer Dereference, which can result in the application crashing or worse, allowing an attacker to execute arbitrary code. An attacker could exploit this vulnerability by sending maliciously crafted input to the affected software, potentially leading to significant security risks and potential data breaches. Developers are strongly advised to update their installations to the latest version as soon as possible to mitigate this threat.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share