VYPR

Faad2

by Faad2 Project

Source repositories

CVEs (9)

  • CVE-2021-32278HigSep 20, 2021
    risk 0.51cvss 7.8epss 0.01

    An issue was discovered in faad2 through 2.10.0. A heap-buffer-overflow exists in the function lt_prediction located in lt_predict.c. It allows an attacker to cause code Execution.

  • CVE-2021-32277HigSep 20, 2021
    risk 0.51cvss 7.8epss 0.01

    An issue was discovered in faad2 through 2.10.0. A heap-buffer-overflow exists in the function sbr_qmf_analysis_32 located in sbr_qmf.c. It allows an attacker to cause code Execution.

  • CVE-2021-32274HigSep 20, 2021
    risk 0.51cvss 7.8epss 0.01

    An issue was discovered in faad2 through 2.10.0. A heap-buffer-overflow exists in the function sbr_qmf_synthesis_64 located in sbr_qmf.c. It allows an attacker to cause code Execution.

  • CVE-2021-32273HigSep 20, 2021
    risk 0.51cvss 7.8epss 0.01

    An issue was discovered in faad2 through 2.10.0. A stack-buffer-overflow exists in the function ftypin located in mp4read.c. It allows an attacker to cause Code Execution.

  • CVE-2023-38858MedAug 15, 2023
    risk 0.42cvss 6.5epss 0.01

    Buffer Overflow vulnerability infaad2 v.2.10.1 allows a remote attacker to execute arbitrary code and cause a denial of service via the mp4info function in mp4read.c:1039.

  • CVE-2023-38857MedAug 15, 2023
    risk 0.36cvss 5.5epss 0.01

    Buffer Overflow vulnerability infaad2 v.2.10.1 allows a remote attacker to execute arbitrary code and cause a denial of service via the stcoin function in mp4read.c.

  • CVE-2021-32276MedSep 20, 2021
    risk 0.36cvss 5.5epss 0.01

    An issue was discovered in faad2 through 2.10.0. A NULL pointer dereference exists in the function get_sample() located in output.c. It allows an attacker to cause Denial of Service.

  • CVE-2021-32272HigSep 20, 2021
    risk 0.00cvss 7.8epss 0.01

    An issue was discovered in faad2 before 2.10.0. A heap-buffer-overflow exists in the function stszin located in mp4read.c. It allows an attacker to cause Code Execution.

  • CVE-2021-26567HigFeb 26, 2021
    risk 0.00cvss 7.8epss 0.01

    Stack-based buffer overflow vulnerability in frontend/main.c in faad2 before 2.2.7.1 allow local attackers to execute arbitrary code via filename and pathname options.