Exploit Database
148,580 exploits tracked across all sources.
gpac <= 1.0.1 - Denial of Service via naludmx_create_avc_decoder_config Null Pointer Dereference
A Segmentation fault exists casued by null pointer dereference exists in Gpac through 1.0.1 via the naludmx_create_avc_decoder_config function in reframe_nalu.c when using mp4box, which causes a denial of service.
CVSS 5.5
Gpac < 1.0.1 - Denial of Service via naludmx_enqueue_or_dispatch Function
A Segmentation fault caused by a floating point exception exists in Gpac through 1.0.1 using mp4box via the naludmx_enqueue_or_dispatch function in reframe_nalu.c, which causes a denial of service.
CVSS 5.5
gpac <= 1.0.1 - Denial of Service via naludmx_parse_nal_avc Function
A null pointer deference vulnerability exists in gpac through 1.0.1 via the naludmx_parse_nal_avc function in reframe_nalu, which allows a denail of service.
CVSS 5.5
GPAC 1.0.1 - Heap-Based Buffer Overflow in gp_rtp_builder_do_tx3g
An issue was discovered in GPAC 1.0.1. There is a heap-based buffer overflow in the function gp_rtp_builder_do_tx3g function in ietf/rtp_pck_3gpp.c, as demonstrated by MP4Box. This can cause a denial of service (DOS).
CVSS 5.5
GPAC 1.0.1 - Heap-Based Buffer Overflow in gf_isom_dovi_config_get
A heap-based buffer overflow vulnerability exists in GPAC v1.0.1 in the gf_isom_dovi_config_get function in MP4Box, which causes a denial of service or execute arbitrary code via a crafted file.
CVSS 7.8
GPAC 1.0.1 - Heap-Based Buffer Overflow in MP4Box via Crafted File
A heab-based buffer overflow vulnerability exists in MP4Box in GPAC 1.0.1 via media.c, which allows attackers to cause a denial of service or execute arbitrary code via a crafted file.
CVSS 7.8
GPAC 1.0.1 - Heap-Based Buffer Overflow in MP4Box via gp_rtp_builder_do_mpeg12_video
A heap-based buffer overflow vulnerability exists in MP4Box in GPAC 1.0.1 via the gp_rtp_builder_do_mpeg12_video function, which allows attackers to possibly have unspecified other impact via a crafted file in the MP4Box command,
CVSS 7.8
GPAC - Memory Leak in gf_isom_oinf_read_entry
Memory leak in the gf_isom_oinf_read_entry function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.
CVSS 5.5
GPAC - Memory Leak in gf_isom_get_root_od Function
Memory leak in the gf_isom_get_root_od function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.
CVSS 5.5
GPAC - Memory Leak in def_parent_box_new Function
Memory leak in the def_parent_box_new function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.
CVSS 5.5
GPAC 1.0.1 - Memory Leak in infe_box_read Function
Memory leak in the infe_box_read function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.
CVSS 5.5
GPAC 1.0.1 - Stack Buffer Overflow in hevc_parse_vps_extension
Stack buffer overflow in the hevc_parse_vps_extension function in MP4Box in GPAC 1.0.1 allows attackers to cause a denial of service or execute arbitrary code via a crafted file.
CVSS 7.8
GPAC - Memory Leak in afra_box_read Function
Memory leak in the afra_box_read function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.
CVSS 5.5
GPAC 1.0.1 - Denial of Service via Media_RewriteODFrame NULL Pointer Dereference
The Media_RewriteODFrame function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
CVSS 5.5
GPAC 1.0.1 - Buffer Overflow in stbl_AppendSize Function
Buffer overflow in the stbl_AppendSize function in MP4Box in GPAC 1.0.1 allows attackers to cause a denial of service or execute arbitrary code via a crafted file.
CVSS 7.8
GPAC 1.0.1 - Denial of Service via NULL Pointer Dereference in gf_media_export_filters
The gf_media_export_filters function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
CVSS 5.5
GPAC 1.0.1 - Denial of Service via NULL Pointer Dereference in gf_hinter_finalize
The gf_hinter_finalize function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
CVSS 5.5
gpac < 1.0.1 - Stack-Based Buffer Overflow in DumpRawUIConfig
An issue was discovered in gpac through 20200801. A stack-buffer-overflow exists in the function DumpRawUIConfig located in odf_dump.c. It allows an attacker to cause code Execution.
CVSS 7.8
gpac < 1.0.1 - Denial of Service via NULL Pointer Dereference in vwid_box_del
An issue was discovered in gpac through 20200801. A NULL pointer dereference exists in the function vwid_box_del located in box_code_base.c. It allows an attacker to cause Denial of Service.
CVSS 5.5
gpac < 1.0.1 - Denial of Service via NULL Pointer Dereference in ilst_item_box_dump
An issue was discovered in gpac through 20200801. A NULL pointer dereference exists in the function ilst_item_box_dump located in box_dump.c. It allows an attacker to cause Denial of Service.
CVSS 5.5
gpac < 1.0.1 - Out-of-bounds Write in gf_fprintf
Buffer overflow vulnerability in function gf_fprintf in os_file.c in gpac before 1.0.1 allows attackers to execute arbitrary code. The fixed version is 1.0.1.
CVSS 7.8
GPAC 1.0.1 - Denial of Service via NULL Pointer Dereference in gf_isom_vp_config_get
The gf_isom_vp_config_get function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
CVSS 5.5
GPAC 1.0.1 - Denial of Service via NULL Pointer Dereference in DumpTrackInfo
The DumpTrackInfo function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
CVSS 5.5
GPAC 1.0.1 - Heap Buffer Overflow in URL_GetProtocolType
Heap buffer overflow in the URL_GetProtocolType function in MP4Box in GPAC 1.0.1 allows attackers to cause a denial of service or execute arbitrary code via a crafted file.
CVSS 5.5
GPAC 1.0.1 - Heap Buffer Overflow in MP4Box print_udta Function
Heap buffer overflow in the print_udta function in MP4Box in GPAC 1.0.1 allows attackers to cause a denial of service or execute arbitrary code via a crafted file.
CVSS 7.8
By Source