Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
gpac gpac vulnerabilities and exploits
(subscribe to this query)
5.5
CVSSv3
CVE-2019-20630
An issue exists in libgpac.a in GPAC prior to 0.8.0, as demonstrated by MP4Box. It contains a heap-based buffer over-read in BS_ReadByte (called from gf_bs_read_bit) in utils/bitstream.c that can cause a denial of service via a crafted MP4 file.
Gpac Gpac
5.5
CVSSv3
CVE-2019-20632
An issue exists in libgpac.a in GPAC prior to 0.8.0, as demonstrated by MP4Box. It contains an invalid pointer dereference in gf_odf_delete_descriptor in odf/desc_private.c that can cause a denial of service via a crafted MP4 file.
Gpac Gpac
7.5
CVSSv3
CVE-2022-29339
In GPAC 2.1-DEV-rev87-g053aae8-master, function BS_ReadByte() in utils/bitstream.c has a failed assertion, which causes a Denial of Service. This vulnerability was fixed in commit 9ea93a2.
Gpac Gpac
7.5
CVSSv3
CVE-2022-29340
GPAC 2.1-DEV-rev87-g053aae8-master. has a Null Pointer Dereference vulnerability in gf_isom_parse_movie_boxes_internal due to improper return value handling of GF_SKIP_BOX, which causes a Denial of Service. This vulnerability was fixed in commit 37592ad.
Gpac Gpac
7.8
CVSSv3
CVE-2022-45202
GPAC v2.1-DEV-rev428-gcb8ae46c8-master exists to contain a stack overflow via the function dimC_box_read at isomedia/box_code_3gpp.c.
Gpac Gpac
5.5
CVSSv3
CVE-2022-45204
GPAC v2.1-DEV-rev428-gcb8ae46c8-master exists to contain a memory leak via the function dimC_box_read at isomedia/box_code_3gpp.c.
Gpac Gpac
7.8
CVSSv3
CVE-2022-45343
GPAC v2.1-DEV-rev478-g696e6f868-master exists to contain a heap use-after-free via the Q_IsTypeOn function at /gpac/src/bifs/unquantize.c.
Gpac Gpac
5
CVSSv3
CVE-2022-1172
Null Pointer Dereference Caused Segmentation Fault in GitHub repository gpac/gpac before 2.1.0-DEV.
Gpac Gpac
5.5
CVSSv3
CVE-2022-1222
Inf loop in GitHub repository gpac/gpac before 2.1.0-DEV.
Gpac Gpac
1 Github repository
7.1
CVSSv3
CVE-2020-23928
An issue exists in gpac prior to 1.0.1. The abst_box_read function in box_code_adobe.c has a heap-based buffer over-read.
Gpac Gpac
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-36920
buffer overflow
CVE-2024-36913
CVE-2024-5497
CVE-2024-23917
CVE-2024-4956
server-side request forgery
CVE-2024-35468
SSTI
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
3
4
5
6
7
8
9
10
NEXT »