Show filters
354 Total Results
Displaying 31-40 of 354
Sort by:
Attacker Value
Unknown

CVE-2023-46927

Disclosure Date: November 01, 2023 (last updated November 09, 2023)
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in gf_isom_use_compact_size gpac/src/isomedia/isom_write.c:3403:3 in gpac/MP4Box.
Attacker Value
Unknown

CVE-2023-46931

Disclosure Date: November 01, 2023 (last updated November 09, 2023)
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a heap-buffer-overflow in ffdmx_parse_side_data /afltest/gpac/src/filters/ff_dmx.c:202:14 in gpac/MP4Box.
Attacker Value
Unknown

CVE-2023-46930

Disclosure Date: November 01, 2023 (last updated November 09, 2023)
GPAC 2.3-DEV-rev605-gfc9e29089-master contains a SEGV in gpac/MP4Box in gf_isom_find_od_id_for_track /afltest/gpac/src/isomedia/media_odf.c:522:14.
Attacker Value
Unknown

CVE-2023-46347

Disclosure Date: October 25, 2023 (last updated November 02, 2023)
In the module "Step by Step products Pack" (ndk_steppingpack) version 1.5.6 and before from NDK Design for PrestaShop, a guest can perform SQL injection. The method `NdkSpack::getPacks()` has sensitive SQL calls that can be executed with a trivial http call and exploited to forge a SQL injection.
Attacker Value
Unknown

CVE-2023-5595

Disclosure Date: October 16, 2023 (last updated October 21, 2023)
Denial of Service in GitHub repository gpac/gpac prior to 2.3.0-DEV.
Attacker Value
Unknown

CVE-2023-5586

Disclosure Date: October 15, 2023 (last updated October 19, 2023)
NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3.0-DEV.
Attacker Value
Unknown

CVE-2023-42298

Disclosure Date: October 12, 2023 (last updated October 18, 2023)
An issue in GPAC GPAC v.2.2.1 and before allows a local attacker to cause a denial of service via the Q_DecCoordOnUnitSphere function of file src/bifs/unquantize.c.
Attacker Value
Unknown

CVE-2023-5520

Disclosure Date: October 11, 2023 (last updated October 14, 2023)
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2.
Attacker Value
Unknown

CVE-2023-5377

Disclosure Date: October 04, 2023 (last updated October 09, 2023)
Out-of-bounds Read in GitHub repository gpac/gpac prior to v2.2.2-DEV.
Attacker Value
Unknown

CVE-2023-41855

Disclosure Date: October 02, 2023 (last updated October 09, 2023)
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Regpacks Regpack plugin <= 0.1 versions.