Vendor CVEs
Gpac
All CVEs
430 total · sorted by risk| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-46929 | Hig | 0.00 | 7.5 | 0.01 | Jan 3, 2024 | An issue discovered in GPAC 2.3-DEV-rev605-gfc9e29089-master in MP4Box in gf_avc_change_vui /afltest/gpac/src/media_tools/av_parsers.c:6872:55 allows attackers to crash the application. | ||
| CVE-2023-48014 | Hig | 0.00 | 7.8 | 0.00 | Nov 15, 2023 | GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a stack overflow via the hevc_parse_vps_extension function at /media_tools/av_parsers.c. | ||
| CVE-2023-48013 | Hig | 0.00 | 7.8 | 0.00 | Nov 15, 2023 | GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a double free via the gf_filterpacket_del function at /gpac/src/filter_core/filter.c. | ||
| CVE-2023-48011 | Hig | 0.00 | 7.8 | 0.00 | Nov 15, 2023 | GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a heap-use-after-free via the flush_ref_samples function at /gpac/src/isomedia/movie_fragments.c. | ||
| CVE-2023-46001 | Med | 0.00 | 5.5 | 0.00 | Nov 7, 2023 | Buffer Overflow vulnerability in gpac MP4Box v.2.3-DEV-rev573-g201320819-master allows a local attacker to cause a denial of service via the gpac/src/isomedia/isom_read.c:2807:51 function in gf_isom_get_user_data. | ||
| CVE-2023-5998 | Hig | 0.00 | 7.5 | 0.01 | Nov 7, 2023 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3.0-DEV. | ||
| CVE-2023-46928 | Med | 0.00 | 5.5 | 0.00 | Nov 1, 2023 | GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_media_change_pl /afltest/gpac/src/media_tools/isom_tools.c:3293:42. | ||
| CVE-2023-46927 | Med | 0.00 | 5.5 | 0.00 | Nov 1, 2023 | GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in gf_isom_use_compact_size gpac/src/isomedia/isom_write.c:3403:3 in gpac/MP4Box. | ||
| CVE-2023-46931 | Med | 0.00 | 5.5 | 0.00 | Nov 1, 2023 | GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in ffdmx_parse_side_data /afltest/gpac/src/filters/ff_dmx.c:202:14 in gpac/MP4Box. | ||
| CVE-2023-46930 | Med | 0.00 | 5.5 | 0.00 | Nov 1, 2023 | GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_isom_find_od_id_for_track /afltest/gpac/src/isomedia/media_odf.c:522:14. | ||
| CVE-2023-5595 | Med | 0.00 | 5.5 | 0.00 | Oct 16, 2023 | Denial of Service in GitHub repository gpac/gpac prior to 2.3.0-DEV. | ||
| CVE-2023-5586 | Hig | 0.00 | 7.8 | 0.00 | Oct 15, 2023 | NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3.0-DEV. | ||
| CVE-2023-5520 | Hig | 0.00 | 7.7 | 0.00 | Oct 11, 2023 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2. | ||
| CVE-2023-5377 | Hig | 0.00 | 7.1 | 0.00 | Oct 4, 2023 | Out-of-bounds Read in GitHub repository gpac/gpac prior to v2.2.2-DEV. | ||
| CVE-2023-4778 | Med | 0.00 | 5.5 | 0.00 | Sep 5, 2023 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV. | ||
| CVE-2023-4758 | Med | 0.00 | 5.5 | 0.00 | Sep 4, 2023 | Buffer Over-read in GitHub repository gpac/gpac prior to 2.3-DEV. | ||
| CVE-2023-4755 | Med | 0.00 | 5.5 | 0.00 | Sep 4, 2023 | Use After Free in GitHub repository gpac/gpac prior to 2.3-DEV. | ||
| CVE-2023-4756 | Med | 0.00 | 5.5 | 0.00 | Sep 4, 2023 | Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV. | ||
| CVE-2023-4754 | Med | 0.00 | 5.5 | 0.00 | Sep 4, 2023 | Out-of-bounds Write in GitHub repository gpac/gpac prior to 2.3-DEV. | ||
| CVE-2023-4722 | Med | 0.00 | 5.5 | 0.00 | Sep 1, 2023 | Integer Overflow or Wraparound in GitHub repository gpac/gpac prior to 2.3-DEV. | ||
| CVE-2023-4721 | Med | 0.00 | 5.5 | 0.00 | Sep 1, 2023 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV. | ||
| CVE-2023-4720 | Med | 0.00 | 5.5 | 0.00 | Sep 1, 2023 | Floating Point Comparison with Incorrect Operator in GitHub repository gpac/gpac prior to 2.3-DEV. | ||
| CVE-2023-4683 | Med | 0.00 | 5.5 | 0.00 | Aug 31, 2023 | NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3-DEV. | ||
| CVE-2023-4682 | Med | 0.00 | 5.5 | 0.00 | Aug 31, 2023 | Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV. | ||
| CVE-2023-4681 | Med | 0.00 | 5.5 | 0.00 | Aug 31, 2023 | NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3-DEV. | ||
| CVE-2023-4678 | Med | 0.00 | 5.5 | 0.00 | Aug 31, 2023 | Divide By Zero in GitHub repository gpac/gpac prior to 2.3-DEV. | ||
| CVE-2023-3523 | Hig | 0.00 | 7.1 | 0.00 | Jul 6, 2023 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2. | ||
| CVE-2023-3291 | Low | 0.00 | 3.3 | 0.00 | Jun 16, 2023 | Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.2. | ||
| CVE-2023-3013 | Hig | 0.00 | 7.1 | 0.00 | May 31, 2023 | Unchecked Return Value in GitHub repository gpac/gpac prior to 2.2.2. | ||
| CVE-2023-3012 | Hig | 0.00 | 7.8 | 0.00 | May 31, 2023 | NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.2.2. | ||
| CVE-2023-2840 | Cri | 0.00 | 9.8 | 0.01 | May 22, 2023 | NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.2.2. | ||
| CVE-2023-2839 | Hig | 0.00 | 7.5 | 0.01 | May 22, 2023 | Divide By Zero in GitHub repository gpac/gpac prior to 2.2.2. | ||
| CVE-2023-2838 | Cri | 0.00 | 9.1 | 0.01 | May 22, 2023 | Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2. | ||
| CVE-2023-2837 | Med | 0.00 | 5.5 | 0.00 | May 22, 2023 | Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.2. | ||
| CVE-2023-1654 | Hig | 0.00 | 7.8 | 0.00 | Mar 27, 2023 | Denial of Service in GitHub repository gpac/gpac prior to 2.4.0. | ||
| CVE-2023-1655 | Hig | 0.00 | 7.8 | 0.01 | Mar 27, 2023 | Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.4.0. | ||
| CVE-2023-0866 | Hig | 0.00 | 7.8 | 0.00 | Feb 16, 2023 | Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3.0-DEV. | ||
| CVE-2023-0841 | Med | 0.00 | 6.3 | 0.01 | Feb 15, 2023 | A vulnerability, which was classified as critical, has been found in GPAC 2.3-DEV-rev40-g3602a5ded. This issue affects the function mp3_dmx_process of the file filters/reframe_mp3.c. The manipulation leads to heap-based buffer overflow. The attack may be initiated remotely. The… | ||
| CVE-2023-0819 | Hig | 0.00 | 7.8 | 0.00 | Feb 13, 2023 | Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to v2.3.0-DEV. | ||
| CVE-2023-0818 | Med | 0.00 | 5.5 | 0.00 | Feb 13, 2023 | Off-by-one Error in GitHub repository gpac/gpac prior to v2.3.0-DEV. | ||
| CVE-2023-0817 | Hig | 0.00 | 7.8 | 0.00 | Feb 13, 2023 | Buffer Over-read in GitHub repository gpac/gpac prior to v2.3.0-DEV. | ||
| CVE-2023-0770 | Hig | 0.00 | 7.8 | 0.00 | Feb 9, 2023 | Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2. | ||
| CVE-2023-0760 | Hig | 0.00 | 7.8 | 0.00 | Feb 9, 2023 | Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to V2.1.0-DEV. | ||
| CVE-2023-23145 | Hig | 0.00 | 7.8 | 0.00 | Jan 20, 2023 | GPAC version 2.2-rev0-gab012bbfb-master was discovered to contain a memory leak in lsr_read_rare_full function. | ||
| CVE-2023-23144 | Med | 0.00 | 5.5 | 0.00 | Jan 20, 2023 | Integer overflow vulnerability in function Q_DecCoordOnUnitSphere file bifs/unquantize.c in GPAC version 2.2-rev0-gab012bbfb-master. | ||
| CVE-2023-23143 | Hig | 0.00 | 7.8 | 0.00 | Jan 20, 2023 | Buffer overflow vulnerability in function avc_parse_slice in file media_tools/av_parsers.c. GPAC version 2.3-DEV-rev1-g4669ba229-master. | ||
| CVE-2023-0358 | Hig | 0.00 | 7.8 | 0.00 | Jan 18, 2023 | Use After Free in GitHub repository gpac/gpac prior to 2.3.0-DEV. | ||
| CVE-2022-4202 | Med | 0.00 | 6.3 | 0.01 | Nov 29, 2022 | A vulnerability, which was classified as problematic, was found in GPAC 2.1-DEV-rev490-g68064e101-master. Affected is the function lsr_translate_coords of the file laser/lsr_dec.c. The manipulation leads to integer overflow. It is possible to launch the attack remotely. The… | ||
| CVE-2022-3957 | Med | 0.00 | 4.3 | 0.01 | Nov 11, 2022 | A vulnerability classified as problematic was found in GPAC. Affected by this vulnerability is the function svg_parse_preserveaspectratio of the file scenegraph/svg_attributes.c of the component SVG Parser. The manipulation leads to memory leak. The attack can be launched… | ||
| CVE-2022-3222 | Med | 0.00 | 5.5 | 0.01 | Sep 15, 2022 | Uncontrolled Recursion in GitHub repository gpac/gpac prior to 2.1.0-DEV. |
- risk 0.00cvss 7.5epss 0.01
An issue discovered in GPAC 2.3-DEV-rev605-gfc9e29089-master in MP4Box in gf_avc_change_vui /afltest/gpac/src/media_tools/av_parsers.c:6872:55 allows attackers to crash the application.
- risk 0.00cvss 7.8epss 0.00
GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a stack overflow via the hevc_parse_vps_extension function at /media_tools/av_parsers.c.
- risk 0.00cvss 7.8epss 0.00
GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a double free via the gf_filterpacket_del function at /gpac/src/filter_core/filter.c.
- risk 0.00cvss 7.8epss 0.00
GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a heap-use-after-free via the flush_ref_samples function at /gpac/src/isomedia/movie_fragments.c.
- risk 0.00cvss 5.5epss 0.00
Buffer Overflow vulnerability in gpac MP4Box v.2.3-DEV-rev573-g201320819-master allows a local attacker to cause a denial of service via the gpac/src/isomedia/isom_read.c:2807:51 function in gf_isom_get_user_data.
- risk 0.00cvss 7.5epss 0.01
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3.0-DEV.
- risk 0.00cvss 5.5epss 0.00
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_media_change_pl /afltest/gpac/src/media_tools/isom_tools.c:3293:42.
- risk 0.00cvss 5.5epss 0.00
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in gf_isom_use_compact_size gpac/src/isomedia/isom_write.c:3403:3 in gpac/MP4Box.
- risk 0.00cvss 5.5epss 0.00
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in ffdmx_parse_side_data /afltest/gpac/src/filters/ff_dmx.c:202:14 in gpac/MP4Box.
- risk 0.00cvss 5.5epss 0.00
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_isom_find_od_id_for_track /afltest/gpac/src/isomedia/media_odf.c:522:14.
- risk 0.00cvss 5.5epss 0.00
Denial of Service in GitHub repository gpac/gpac prior to 2.3.0-DEV.
- risk 0.00cvss 7.8epss 0.00
NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3.0-DEV.
- risk 0.00cvss 7.7epss 0.00
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2.
- risk 0.00cvss 7.1epss 0.00
Out-of-bounds Read in GitHub repository gpac/gpac prior to v2.2.2-DEV.
- risk 0.00cvss 5.5epss 0.00
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
- risk 0.00cvss 5.5epss 0.00
Buffer Over-read in GitHub repository gpac/gpac prior to 2.3-DEV.
- risk 0.00cvss 5.5epss 0.00
Use After Free in GitHub repository gpac/gpac prior to 2.3-DEV.
- risk 0.00cvss 5.5epss 0.00
Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV.
- risk 0.00cvss 5.5epss 0.00
Out-of-bounds Write in GitHub repository gpac/gpac prior to 2.3-DEV.
- risk 0.00cvss 5.5epss 0.00
Integer Overflow or Wraparound in GitHub repository gpac/gpac prior to 2.3-DEV.
- risk 0.00cvss 5.5epss 0.00
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
- risk 0.00cvss 5.5epss 0.00
Floating Point Comparison with Incorrect Operator in GitHub repository gpac/gpac prior to 2.3-DEV.
- risk 0.00cvss 5.5epss 0.00
NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3-DEV.
- risk 0.00cvss 5.5epss 0.00
Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV.
- risk 0.00cvss 5.5epss 0.00
NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3-DEV.
- risk 0.00cvss 5.5epss 0.00
Divide By Zero in GitHub repository gpac/gpac prior to 2.3-DEV.
- risk 0.00cvss 7.1epss 0.00
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2.
- risk 0.00cvss 3.3epss 0.00
Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.2.
- risk 0.00cvss 7.1epss 0.00
Unchecked Return Value in GitHub repository gpac/gpac prior to 2.2.2.
- risk 0.00cvss 7.8epss 0.00
NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.2.2.
- risk 0.00cvss 9.8epss 0.01
NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.2.2.
- risk 0.00cvss 7.5epss 0.01
Divide By Zero in GitHub repository gpac/gpac prior to 2.2.2.
- risk 0.00cvss 9.1epss 0.01
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2.
- risk 0.00cvss 5.5epss 0.00
Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.2.
- risk 0.00cvss 7.8epss 0.00
Denial of Service in GitHub repository gpac/gpac prior to 2.4.0.
- risk 0.00cvss 7.8epss 0.01
Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.4.0.
- risk 0.00cvss 7.8epss 0.00
Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3.0-DEV.
- risk 0.00cvss 6.3epss 0.01
A vulnerability, which was classified as critical, has been found in GPAC 2.3-DEV-rev40-g3602a5ded. This issue affects the function mp3_dmx_process of the file filters/reframe_mp3.c. The manipulation leads to heap-based buffer overflow. The attack may be initiated remotely. The…
- risk 0.00cvss 7.8epss 0.00
Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to v2.3.0-DEV.
- risk 0.00cvss 5.5epss 0.00
Off-by-one Error in GitHub repository gpac/gpac prior to v2.3.0-DEV.
- risk 0.00cvss 7.8epss 0.00
Buffer Over-read in GitHub repository gpac/gpac prior to v2.3.0-DEV.
- risk 0.00cvss 7.8epss 0.00
Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.
- risk 0.00cvss 7.8epss 0.00
Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to V2.1.0-DEV.
- risk 0.00cvss 7.8epss 0.00
GPAC version 2.2-rev0-gab012bbfb-master was discovered to contain a memory leak in lsr_read_rare_full function.
- risk 0.00cvss 5.5epss 0.00
Integer overflow vulnerability in function Q_DecCoordOnUnitSphere file bifs/unquantize.c in GPAC version 2.2-rev0-gab012bbfb-master.
- risk 0.00cvss 7.8epss 0.00
Buffer overflow vulnerability in function avc_parse_slice in file media_tools/av_parsers.c. GPAC version 2.3-DEV-rev1-g4669ba229-master.
- risk 0.00cvss 7.8epss 0.00
Use After Free in GitHub repository gpac/gpac prior to 2.3.0-DEV.
- risk 0.00cvss 6.3epss 0.01
A vulnerability, which was classified as problematic, was found in GPAC 2.1-DEV-rev490-g68064e101-master. Affected is the function lsr_translate_coords of the file laser/lsr_dec.c. The manipulation leads to integer overflow. It is possible to launch the attack remotely. The…
- risk 0.00cvss 4.3epss 0.01
A vulnerability classified as problematic was found in GPAC. Affected by this vulnerability is the function svg_parse_preserveaspectratio of the file scenegraph/svg_attributes.c of the component SVG Parser. The manipulation leads to memory leak. The attack can be launched…
- risk 0.00cvss 5.5epss 0.01
Uncontrolled Recursion in GitHub repository gpac/gpac prior to 2.1.0-DEV.
Page 7 of 9