UBUNTU-CVE-2018-21015

Source
https://ubuntu.com/security/CVE-2018-21015
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2018/UBUNTU-CVE-2018-21015.json
JSON Data
https://api.test.osv.dev/v1/vulns/UBUNTU-CVE-2018-21015
Related
Published
2019-09-16T13:15:00Z
Modified
2024-12-18T16:38:38Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

AVCDuplicateConfig() at isomedia/avcext.c in GPAC 0.7.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted file. There is "cfg_new->AVCLevelIndication = cfg->AVCLevelIndication;" but cfg could be NULL.

References

Affected packages

Ubuntu:Pro:14.04:LTS / gpac

Package

Name
gpac
Purl
pkg:deb/ubuntu/gpac?arch=src?distro=esm-infra-legacy/trusty

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.5.0+svn4288~dfsg1-1ubuntu1
0.5.0+svn4288~dfsg1-4
0.5.0+svn4288~dfsg1-4ubuntu1
0.5.0+svn4288~dfsg1-4ubuntu1+esm1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:16.04:LTS / gpac

Package

Name
gpac
Purl
pkg:deb/ubuntu/gpac?arch=src?distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.5.2-426-gc5ad4e4+dfsg5-1build1
0.5.2-426-gc5ad4e4+dfsg5-1ubuntu0.1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:18.04:LTS / gpac

Package

Name
gpac
Purl
pkg:deb/ubuntu/gpac?arch=src?distro=esm-apps/bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.5.2-426-gc5ad4e4+dfsg5-3
0.5.2-426-gc5ad4e4+dfsg5-3ubuntu0.1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:20.04:LTS / ccextractor

Package

Name
ccextractor
Purl
pkg:deb/ubuntu/ccextractor?arch=src?distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.87+ds1-1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:20.04:LTS / gpac

Package

Name
gpac
Purl
pkg:deb/ubuntu/gpac?arch=src?distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.5.2-426-gc5ad4e4+dfsg5-4ubuntu1
0.5.2-426-gc5ad4e4+dfsg5-5

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:22.04:LTS / ccextractor

Package

Name
ccextractor
Purl
pkg:deb/ubuntu/ccextractor?arch=src?distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.88+ds1-1
0.93+ds2-1
0.93+ds2-1ubuntu1
0.93+ds2-2

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:24.04:LTS / ccextractor

Package

Name
ccextractor
Purl
pkg:deb/ubuntu/ccextractor?arch=src?distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.94+ds1-3
0.94+ds1-3build2
0.94+ds1-3build3

Ecosystem specific

{
    "ubuntu_priority": "medium"
}