Vulnerability index

Browse CVEs

353 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Gpac HIGH 8.8
CVE-2022-4202

A vulnerability, which was classified as problematic, was found in GPAC 2.1-DEV-rev490-g68064e101-master. Affected is the function lsr_translate_coor…

Patch available
Fix from $1,950 2022-11-29
Gpac HIGH 7.8
CVE-2022-45202

GPAC v2.1-DEV-rev428-gcb8ae46c8-master was discovered to contain a stack overflow via the function dimC_box_read at isomedia/box_code_3gpp.c.

Fix: 2.2.0+
Fix from $1,950 2022-11-29
Gpac MEDIUM 5.5
CVE-2022-45204

GPAC v2.1-DEV-rev428-gcb8ae46c8-master was discovered to contain a memory leak via the function dimC_box_read at isomedia/box_code_3gpp.c.

Fix: 2.2.0+
Fix from $1,600 2022-11-29
Gpac MEDIUM 6.5
CVE-2022-3957

A vulnerability classified as problematic was found in GPAC. Affected by this vulnerability is the function svg_parse_preserveaspectratio of the file…

Fix: 2.2.0+
Fix from $1,600 2022-11-11
Gpac MEDIUM 5.5
CVE-2022-43254

GPAC v2.1-DEV-rev368-gfd054169b-master was discovered to contain a memory leak via the component gf_list_new at utils/list.c.

Fix: 2.2.0+
Fix from $1,600 2022-11-02
Gpac MEDIUM 5.5
CVE-2022-43255

GPAC v2.1-DEV-rev368-gfd054169b-master was discovered to contain a memory leak via the component gf_odf_new_iod at odf/odf_code.c.

Fix: 2.2.0+
Fix from $1,600 2022-11-02
Gpac HIGH 7.8
CVE-2022-43040

GPAC 2.1-DEV-rev368-gfd054169b-master was discovered to contain a heap buffer overflow via the function gf_isom_box_dump_start_ex at /isomedia/box_fu…

Fix: 2.2.0+
Fix from $1,950 2022-10-19
Gpac HIGH 7.8
CVE-2022-43042

GPAC 2.1-DEV-rev368-gfd054169b-master was discovered to contain a heap buffer overflow via the function FixSDTPInTRAF at isomedia/isom_intern.c.

Fix: 2.2.0+
Fix from $1,950 2022-10-19
Gpac MEDIUM 5.5
CVE-2022-43039

GPAC 2.1-DEV-rev368-gfd054169b-master was discovered to contain a segmentation violation via the function gf_isom_meta_restore_items_ref at /isomedia…

Fix: 2.2.0+
Fix from $1,600 2022-10-19
Gpac MEDIUM 5.5
CVE-2022-43043

GPAC 2.1-DEV-rev368-gfd054169b-master was discovered to contain a segmentation violation via the function BD_CheckSFTimeOffset at /bifs/field_decode.…

Fix: 2.2.0+
Fix from $1,600 2022-10-19
Gpac MEDIUM 5.5
CVE-2022-43044

GPAC 2.1-DEV-rev368-gfd054169b-master was discovered to contain a segmentation violation via the function gf_isom_get_meta_item_info at /isomedia/met…

Fix: 2.2.0+
Fix from $1,600 2022-10-19
Gpac MEDIUM 5.5
CVE-2022-43045

GPAC 2.1-DEV-rev368-gfd054169b-master was discovered to contain a segmentation violation via the function gf_dump_vrml_sffield at /scene_manager/scen…

Fix: 2.2.0+
Fix from $1,600 2022-10-19
Gpac MEDIUM 5.5
CVE-2022-3222

Uncontrolled Recursion in GitHub repository gpac/gpac prior to 2.1.0-DEV.

Fix: 2.1+
Fix from $1,600 2022-09-15
Gpac HIGH 7.8
CVE-2022-3178

Buffer Over-read in GitHub repository gpac/gpac prior to 2.1.0-DEV.

Fix: 2.1.0-dev+
Fix from $1,950 2022-09-12
Gpac HIGH 7.8
CVE-2022-38530

GPAC v2.1-DEV-rev232-gfcaa01ebb-master was discovered to contain a stack overflow when processing ISOM_IOD.

Fix: 2.2.0+
Fix from $1,950 2022-09-06
Gpac MEDIUM 5.5
CVE-2022-36191

A heap-buffer-overflow had occurred in function gf_isom_dovi_config_get of isomedia/avc_ext.c:2490, as demonstrated by MP4Box. This vulnerability was…

Fix: 2.2.0+
Fix from $1,600 2022-08-17
Gpac CRITICAL 9.8
CVE-2022-36190

GPAC mp4box 2.1-DEV-revUNKNOWN-master has a use-after-free vulnerability in function gf_isom_dovi_config_get. This vulnerability was fixed in commit …

Fix: 2.2.0+
Fix from $2,300 2022-08-17
Gpac HIGH 7.5
CVE-2022-36186

A Null Pointer dereference vulnerability exists in GPAC 2.1-DEV-revUNKNOWN-master via the function gf_filter_pid_set_property_full () at filter_core/…

Patch available
Fix from $1,950 2022-08-17
Gpac MEDIUM 5.5
CVE-2022-2549

NULL Pointer Dereference in GitHub repository gpac/gpac prior to v2.1.0-DEV.

Fix: after 2.0.0
Fix from $1,600 2022-07-27
Gpac HIGH 7.8
CVE-2022-2453

Use After Free in GitHub repository gpac/gpac prior to 2.1-DEV.

Fix: after 2.0.0
Fix from $1,950 2022-07-19
Gpac HIGH 7.8
CVE-2022-2454

Integer Overflow or Wraparound in GitHub repository gpac/gpac prior to 2.1-DEV.

Fix: after 2.0.0
Fix from $1,950 2022-07-19
Gpac MEDIUM 5.5
CVE-2021-40606

The gf_bs_write_data function in GPAC 1.0.1 allows attackers to cause a denial of service via a crafted file in the MP4Box command.

Fix: 2.0.0+
Fix from $1,600 2022-06-28
Gpac MEDIUM 5.5
CVE-2021-40607

The schm_box_size function in GPAC 1.0.1 allows attackers to cause a denial of service via a crafted file in the MP4Box command.

Fix: 2.0.0+
Fix from $1,600 2022-06-28
Gpac MEDIUM 5.5
CVE-2021-40608

The gf_hinter_track_finalize function in GPAC 1.0.1 allows attackers to cause a denial of service via a crafted file in the MP4Box command.

Fix: 2.0.0+
Fix from $1,600 2022-06-28
Gpac MEDIUM 5.5
CVE-2021-40609

The GetHintFormat function in GPAC 1.0.1 allows attackers to cause a denial of service via a crafted file in the MP4Box command.

Fix: 2.0.0+
Fix from $1,600 2022-06-28
Gpac MEDIUM 5.5
CVE-2021-40944

In GPAC MP4Box 1.1.0, there is a Null pointer reference in the function gf_filter_pid_get_packet function in src/filter_core/filter_pid.c:5394, as de…

Patch available
Fix from $1,600 2022-06-28
Gpac MEDIUM 5.5
CVE-2021-40942

In GPAC MP4Box v1.1.0, there is a heap-buffer-overflow in the function filter_parse_dyn_args function in filter_core/filter.c:1454, as demonstrated b…

Patch available
Fix from $1,600 2022-06-27
Mp4box MEDIUM 5.5
CVE-2021-41458

In GPAC MP4Box v1.1.0, there is a stack buffer overflow at src/utils/error.c:1769 which leads to a denial of service vulnerability.

No fix yet
Fix from $1,600 2022-06-16
Gpac MEDIUM 5.5
CVE-2021-40592

GPAC version before commit 71460d72ec07df766dab0a4d52687529f3efcf0a (version v1.0.1 onwards) contains loop with unreachable exit condition ('infinite…

Fix: 1.0.1+
Fix from $1,600 2022-06-08
Gpac CRITICAL 9.8
CVE-2022-1795

Use After Free in GitHub repository gpac/gpac prior to v2.1.0-DEV.

Fix: 2.1.0+
Fix from $2,300 2022-05-18