A Segmentation fault caused by a floating point exception exists in Gpac through 1.0.1 using mp4box via the naludmxenqueueordispatch function in reframenalu.c, which causes a denial of service.
[ { "signature_type": "Function", "id": "CVE-2021-40562-808dadcc", "source": "https://github.com/gpac/gpac/commit/5dd71c7201a3e5cf40732d585bfb21c906c171d3", "signature_version": "v1", "target": { "function": "naludmx_create_avc_decoder_config", "file": "src/filters/reframe_nalu.c" }, "digest": { "function_hash": "222909125538054554142696760066351192249", "length": 4834.0 }, "deprecated": false }, { "signature_type": "Line", "id": "CVE-2021-40562-861a6994", "source": "https://github.com/gpac/gpac/commit/5dd71c7201a3e5cf40732d585bfb21c906c171d3", "signature_version": "v1", "target": { "file": "src/filters/reframe_nalu.c" }, "digest": { "threshold": 0.9, "line_hashes": [ "111753558529549020020712736279529203355", "312475701619028868588341076389345054319", "210095339424249211427502420724033199260", "306106039706621833680095253597863398070", "83200840015914086248955994616472368455", "125570266520436794753878286141420955597" ] }, "deprecated": false } ]