Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
CVE-2021-31258 vulnerabilities and exploits
(subscribe to this query)
4.3
CVSSv2
CVE-2021-31258
The gf_isom_set_extraction_slc function in GPAC 1.0.1 allows malicious users to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
6.8
CVSSv2
CVE-2021-31255
Buffer overflow in the abst_box_read function in MP4Box in GPAC 1.0.1 allows malicious users to cause a denial of service or execute arbitrary code via a crafted file.
4.3
CVSSv2
CVE-2021-31257
The HintFile function in GPAC 1.0.1 allows malicious users to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
6.8
CVSSv2
CVE-2021-31254
Buffer overflow in the tenc_box_read function in MP4Box in GPAC 1.0.1 allows malicious users to cause a denial of service or execute arbitrary code via a crafted file, related invalid IV sizes.
4.3
CVSSv2
CVE-2021-31259
The gf_isom_cenc_get_default_info_internal function in GPAC 1.0.1 allows malicious users to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
4.3
CVSSv2
CVE-2021-31262
The AV1_DuplicateConfig function in GPAC 1.0.1 allows malicious users to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
4.3
CVSSv2
CVE-2021-31256
Memory leak in the stbl_GetSampleInfos function in MP4Box in GPAC 1.0.1 allows malicious users to read memory via a crafted file.
Gpac Gpac 1.0.1
4.3
CVSSv2
CVE-2021-31261
The gf_hinter_track_new function in GPAC 1.0.1 allows malicious users to read memory via a crafted file in the MP4Box command.
4.3
CVSSv2
CVE-2021-31260
The MergeTrack function in GPAC 1.0.1 allows malicious users to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
4.3
CVSSv2
CVE-2021-30015
There is a Null Pointer Dereference in function filter_core/filter_pck.c:gf_filter_pck_new_alloc_internal in GPAC 1.0.1. The pid comes from function av1dmx_parse_flush_sample, the ctx.opid maybe NULL. The result is a crash in gf_filter_pck_new_alloc_internal.
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-24955
man-in-the-middle
dos
CVE-2024-2818
CVE-2024-30584
CVE-2024-31134
camera
CVE-2023-45866
CVE-2024-30585
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »