Total
337 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2023-48013 | 1 Gpac | 1 Gpac | 2023-11-22 | N/A | 7.8 HIGH |
GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a double free via the gf_filterpacket_del function at /gpac/src/filter_core/filter.c. | |||||
CVE-2023-48014 | 1 Gpac | 1 Gpac | 2023-11-22 | N/A | 7.8 HIGH |
GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a stack overflow via the hevc_parse_vps_extension function at /media_tools/av_parsers.c. | |||||
CVE-2023-47384 | 1 Gpac | 1 Gpac | 2023-11-21 | N/A | 5.5 MEDIUM |
MP4Box GPAC v2.3-DEV-rev617-g671976fcc-master was discovered to contain a memory leak in the function gf_isom_add_chapter at /isomedia/isom_write.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file. | |||||
CVE-2023-46001 | 1 Gpac | 1 Gpac | 2023-11-16 | N/A | 5.5 MEDIUM |
Buffer Overflow vulnerability in gpac MP4Box v.2.3-DEV-rev573-g201320819-master allows a local attacker to cause a denial of service via the gpac/src/isomedia/isom_read.c:2807:51 function in gf_isom_get_user_data. | |||||
CVE-2023-5998 | 1 Gpac | 1 Gpac | 2023-11-15 | N/A | 7.5 HIGH |
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3.0-DEV. | |||||
CVE-2023-46930 | 1 Gpac | 1 Gpac | 2023-11-08 | N/A | 5.5 MEDIUM |
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_isom_find_od_id_for_track /afltest/gpac/src/isomedia/media_odf.c:522:14. | |||||
CVE-2023-46931 | 1 Gpac | 1 Gpac | 2023-11-08 | N/A | 5.5 MEDIUM |
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in ffdmx_parse_side_data /afltest/gpac/src/filters/ff_dmx.c:202:14 in gpac/MP4Box. | |||||
CVE-2023-46927 | 1 Gpac | 1 Gpac | 2023-11-08 | N/A | 5.5 MEDIUM |
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in gf_isom_use_compact_size gpac/src/isomedia/isom_write.c:3403:3 in gpac/MP4Box. | |||||
CVE-2023-46928 | 1 Gpac | 1 Gpac | 2023-11-08 | N/A | 5.5 MEDIUM |
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_media_change_pl /afltest/gpac/src/media_tools/isom_tools.c:3293:42. | |||||
CVE-2022-4202 | 1 Gpac | 1 Gpac | 2023-11-07 | N/A | 8.8 HIGH |
A vulnerability, which was classified as problematic, was found in GPAC 2.1-DEV-rev490-g68064e101-master. Affected is the function lsr_translate_coords of the file laser/lsr_dec.c. The manipulation leads to integer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The name of the patch is b3d821c4ae9ba62b3a194d9dcb5e99f17bd56908. It is recommended to apply a patch to fix this issue. VDB-214518 is the identifier assigned to this vulnerability. | |||||
CVE-2022-3957 | 1 Gpac | 1 Gpac | 2023-11-07 | N/A | 6.5 MEDIUM |
A vulnerability classified as problematic was found in GPAC. Affected by this vulnerability is the function svg_parse_preserveaspectratio of the file scenegraph/svg_attributes.c of the component SVG Parser. The manipulation leads to memory leak. The attack can be launched remotely. The name of the patch is 2191e66aa7df750e8ef01781b1930bea87b713bb. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-213463. | |||||
CVE-2023-5595 | 1 Gpac | 1 Gpac | 2023-10-20 | N/A | 5.5 MEDIUM |
Denial of Service in GitHub repository gpac/gpac prior to 2.3.0-DEV. | |||||
CVE-2023-5586 | 1 Gpac | 1 Gpac | 2023-10-19 | N/A | 7.8 HIGH |
NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3.0-DEV. | |||||
CVE-2023-42298 | 1 Gpac | 1 Gpac | 2023-10-17 | N/A | 5.5 MEDIUM |
An issue in GPAC GPAC v.2.2.1 and before allows a local attacker to cause a denial of service via the Q_DecCoordOnUnitSphere function of file src/bifs/unquantize.c. | |||||
CVE-2023-5520 | 1 Gpac | 1 Gpac | 2023-10-13 | N/A | 7.1 HIGH |
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2. | |||||
CVE-2023-5377 | 1 Gpac | 1 Gpac | 2023-10-05 | N/A | 7.1 HIGH |
Out-of-bounds Read in GitHub repository gpac/gpac prior to v2.2.2-DEV. | |||||
CVE-2023-41000 | 1 Gpac | 1 Gpac | 2023-09-13 | N/A | 5.5 MEDIUM |
GPAC through 2.2.1 has a use-after-free vulnerability in the function gf_bifs_flush_command_list in bifs/memory_decoder.c. | |||||
CVE-2023-4778 | 1 Gpac | 1 Gpac | 2023-09-07 | N/A | 5.5 MEDIUM |
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV. | |||||
CVE-2023-4756 | 1 Gpac | 1 Gpac | 2023-09-06 | N/A | 5.5 MEDIUM |
Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV. | |||||
CVE-2023-4754 | 1 Gpac | 1 Gpac | 2023-09-06 | N/A | 5.5 MEDIUM |
Out-of-bounds Write in GitHub repository gpac/gpac prior to 2.3-DEV. |