Vulnerability index

Browse CVEs

353 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Gpac MEDIUM 5.5
CVE-2020-22678

An issue was discovered in gpac 0.8.0. The gf_media_nalu_remove_emulation_bytes function in av_parsers.c has a heap-based buffer overflow which can l…

Patch available
Fix from $1,600 2021-10-12
Gpac MEDIUM 5.5
CVE-2020-22679

Memory leak in the sgpd_parse_entry function in MP4Box in gpac 0.8.0 allows attackers to cause a denial of service (DoS) via a crafted input.

Patch available
Fix from $1,600 2021-10-12
Mp4box HIGH 7.5
CVE-2021-41456

There is a stack buffer overflow in MP4Box v1.0.1 at src/filters/dmx_nhml.c:1004 in the nhmldmx_send_sample() function szXmlTo parameter which leads …

No fix yet
Fix from $1,950 2021-10-01
Mp4box HIGH 7.5
CVE-2021-41457

There is a stack buffer overflow in MP4Box 1.1.0 at src/filters/dmx_nhml.c in nhmldmx_init_parsing which leads to a denial of service vulnerability.

No fix yet
Fix from $1,950 2021-10-01
Mp4box HIGH 7.5
CVE-2021-41459

There is a stack buffer overflow in MP4Box v1.0.1 at src/filters/dmx_nhml.c:1008 in the nhmldmx_send_sample() function szXmlFrom parameter which lead…

No fix yet
Fix from $1,950 2021-10-01
Gpac HIGH 7.1
CVE-2020-23267

An issue was discovered in gpac 0.8.0. The gf_hinter_track_process function in isom_hinter_track_process.c has a heap-based buffer overflow which can…

No fix yet
Fix from $1,950 2021-09-22
Gpac MEDIUM 5.5
CVE-2020-23266

An issue was discovered in gpac 0.8.0. The OD_ReadUTF8String function in odf_code.c has a heap-based buffer overflow which can lead to a denial of se…

No fix yet
Fix from $1,600 2021-09-22
Gpac MEDIUM 5.5
CVE-2020-23269

An issue was discovered in gpac 0.8.0. The stbl_GetSampleSize function in isomedia/stbl_read.c has a heap-based buffer overflow which can lead to a d…

No fix yet
Fix from $1,600 2021-09-22
Gpac HIGH 7.8
CVE-2021-32271

An issue was discovered in gpac through 20200801. A stack-buffer-overflow exists in the function DumpRawUIConfig located in odf_dump.c. It allows an …

Fix: 1.0.1+
Fix from $1,950 2021-09-20
Gpac MEDIUM 5.5
CVE-2021-32269

An issue was discovered in gpac through 20200801. A NULL pointer dereference exists in the function ilst_item_box_dump located in box_dump.c. It allo…

Fix: 1.0.1+
Fix from $1,600 2021-09-20
Gpac MEDIUM 5.5
CVE-2021-32270

An issue was discovered in gpac through 20200801. A NULL pointer dereference exists in the function vwid_box_del located in box_code_base.c. It allow…

Fix: 1.0.1+
Fix from $1,600 2021-09-20
Gpac HIGH 7.8
CVE-2021-32268

Buffer overflow vulnerability in function gf_fprintf in os_file.c in gpac before 1.0.1 allows attackers to execute arbitrary code. The fixed version …

Fix: 1.0.1+
Fix from $1,950 2021-09-20
Gpac MEDIUM 5.5
CVE-2021-32138

The DumpTrackInfo function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box co…

Patch available
Fix from $1,600 2021-09-13
Gpac MEDIUM 5.5
CVE-2021-32139

The gf_isom_vp_config_get function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the M…

Patch available
Fix from $1,600 2021-09-13
Gpac MEDIUM 5.5
CVE-2021-33361

Memory leak in the afra_box_read function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.

Patch available
Fix from $1,600 2021-09-13
Gpac MEDIUM 5.5
CVE-2021-33363

Memory leak in the infe_box_read function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.

Patch available
Fix from $1,600 2021-09-13
Gpac MEDIUM 5.5
CVE-2021-33365

Memory leak in the gf_isom_get_root_od function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.

Patch available
Fix from $1,600 2021-09-13
Gpac MEDIUM 5.5
CVE-2021-33366

Memory leak in the gf_isom_oinf_read_entry function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.

Patch available
Fix from $1,600 2021-09-13
Gpac MEDIUM 5.5
CVE-2021-33364

Memory leak in the def_parent_box_new function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.

Patch available
Fix from $1,600 2021-09-13
Gpac HIGH 7.8
CVE-2021-33362

Stack buffer overflow in the hevc_parse_vps_extension function in MP4Box in GPAC 1.0.1 allows attackers to cause a denial of service or execute arbit…

Patch available
Fix from $1,950 2021-09-13
Gpac MEDIUM 5.5
CVE-2021-32132

The abst_box_size function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box co…

Patch available
Fix from $1,600 2021-09-13
Gpac MEDIUM 5.5
CVE-2021-32135

The trak_box_size function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box co…

Patch available
Fix from $1,600 2021-09-13
Gpac MEDIUM 5.5
CVE-2021-32137

Heap buffer overflow in the URL_GetProtocolType function in MP4Box in GPAC 1.0.1 allows attackers to cause a denial of service or execute arbitrary c…

Patch available
Fix from $1,600 2021-09-13
Gpac MEDIUM 5.5
CVE-2021-32134

The gf_odf_desc_copy function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box…

Patch available
Fix from $1,600 2021-09-13
Gpac HIGH 7.8
CVE-2021-32136

Heap buffer overflow in the print_udta function in MP4Box in GPAC 1.0.1 allows attackers to cause a denial of service or execute arbitrary code via a…

Patch available
Fix from $1,950 2021-09-13
Gpac CRITICAL 9.1
CVE-2020-19751

An issue was discovered in gpac 0.8.0. The gf_odf_del_ipmp_tool function in odf_code.c has a heap-based buffer over-read.

Patch available
Fix from $2,300 2021-09-07
Gpac HIGH 7.5
CVE-2020-19750

An issue was discovered in gpac 0.8.0. The strdup function in box_code_base.c has a heap-based buffer over-read.

Patch available
Fix from $1,950 2021-09-07
Gpac HIGH 8.8
CVE-2021-21835

An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library v1.0.1.…

No fix yet
Fix from $1,950 2021-08-25
Gpac HIGH 8.8
CVE-2021-21862

Multiple exploitable integer truncation vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content librar…

No fix yet
Fix from $1,950 2021-08-18
Gpac HIGH 8.8
CVE-2021-21856

Multiple exploitable integer overflow vulnerabilities exist within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library …

No fix yet
Fix from $1,950 2021-08-18