Show filters
354 Total Results
Displaying 11-20 of 354
Sort by:
Attacker Value
Unknown
CVE-2024-24265
Disclosure Date: February 05, 2024 (last updated February 08, 2024)
gpac v2.2.1 was discovered to contain a memory leak via the dst_props variable in the gf_filter_pid_merge_properties_internal function.
0
Attacker Value
Unknown
CVE-2024-22749
Disclosure Date: January 25, 2024 (last updated February 01, 2024)
GPAC v2.3 was detected to contain a buffer overflow via the function gf_isom_new_generic_sample_description function in the isomedia/isom_write.c:4577
0
Attacker Value
Unknown
CVE-2023-50120
Disclosure Date: January 10, 2024 (last updated January 19, 2024)
MP4Box GPAC version 2.3-DEV-rev636-gfbd7e13aa-master was discovered to contain an infinite loop in the function av1_uvlc at media_tools/av_parsers.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.
0
Attacker Value
Unknown
CVE-2024-0322
Disclosure Date: January 08, 2024 (last updated January 12, 2024)
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
0
Attacker Value
Unknown
CVE-2024-0321
Disclosure Date: January 08, 2024 (last updated January 12, 2024)
Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV.
0
Attacker Value
Unknown
CVE-2023-46929
Disclosure Date: January 03, 2024 (last updated January 11, 2024)
An issue discovered in GPAC 2.3-DEV-rev605-gfc9e29089-master in MP4Box in gf_avc_change_vui /afltest/gpac/src/media_tools/av_parsers.c:6872:55 allows attackers to crash the application.
0
Attacker Value
Unknown
CVE-2023-52079
Disclosure Date: December 28, 2023 (last updated January 05, 2024)
msgpackr is a fast MessagePack NodeJS/JavaScript implementation. Prior to 1.10.1, when decoding user supplied MessagePack messages, users can trigger stuck threads by crafting messages that keep the decoder stuck in a loop. The fix is available in v1.10.1.
Exploits seem to require structured cloning, replacing the 0x70 extension with your own (that throws an error or does something other than recursive referencing) should mitigate the issue.
0
Attacker Value
Unknown
CVE-2023-46932
Disclosure Date: December 09, 2023 (last updated December 13, 2023)
Heap Buffer Overflow vulnerability in GPAC version 2.3-DEV-rev617-g671976fcc-master, allows attackers to execute arbitrary code and cause a denial of service (DoS) via str2ulong class in src/media_tools/avilib.c in gpac/MP4Box.
0
Attacker Value
Unknown
CVE-2023-47465
Disclosure Date: December 09, 2023 (last updated December 13, 2023)
An issue in GPAC v.2.2.1 and before allows a local attacker to cause a denial of service (DoS) via the ctts_box_read function of file src/isomedia/box_code_base.c.
0
Attacker Value
Unknown
CVE-2023-48958
Disclosure Date: December 07, 2023 (last updated December 13, 2023)
gpac 2.3-DEV-rev617-g671976fcc-master contains memory leaks in gf_mpd_resolve_url media_tools/mpd.c:4589.
0