Writeup Exploits
60,502 exploits tracked across all sources.
GPAC v2.3-DEV-rev381-g817a848f6-master - Out-of-bounds Write in gf_isom_remove_user_data
GPAC v2.3-DEV-rev381-g817a848f6-master was discovered to contain a segmentation violation in the gf_isom_remove_user_data function at /lib/libgpac.so.
CVSS 5.5
GPAC v2.3-DEV-rev381-g817a848f6-master - Out-of-bounds Write in gf_dump_vrml_sffield
GPAC v2.3-DEV-rev381-g817a848f6-master was discovered to contain a segmentation violation in the gf_dump_vrml_sffield function at /lib/libgpac.so.
CVSS 5.5
GPAC v2.3-DEV-rev381-g817a848f6-master - Out-of-bounds Write in dump_isom_scene
GPAC v2.3-DEV-rev381-g817a848f6-master was discovered to contain a segmentation violation in the dump_isom_scene function at /mp4box/filedump.c.
CVSS 5.5
GPAC 2.3-DEV-rev35-gbbca86917-master - Buffer Overflow
A vulnerability was found in GPAC 2.3-DEV-rev35-gbbca86917-master. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file filters/load_text.c. The manipulation leads to buffer overflow. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The identifier VDB-223297 was assigned to this vulnerability.
CVSS 5.3
GPAC 2.3-DEV-rev35-gbbca86917-master - Double Free
A vulnerability has been found in GPAC 2.3-DEV-rev35-gbbca86917-master and classified as problematic. This vulnerability affects the function gf_av1_reset_state of the file media_tools/av_parsers.c. The manipulation leads to double free. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. VDB-223294 is the identifier assigned to this vulnerability.
CVSS 5.3
GPAC 2.3-DEV-rev35-gbbca86917-master - Buffer Overflow
A vulnerability, which was classified as problematic, was found in GPAC 2.3-DEV-rev35-gbbca86917-master. This affects the function gf_m2ts_process_sdt of the file media_tools/mpegts.c. The manipulation leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The identifier VDB-223293 was assigned to this vulnerability.
CVSS 5.3
GPAC < 2.2.0 - Buffer Overflow in h263dmx_process
GPAC MP4box 2.1-DEV-rev649-ga8f438d20 is vulnerable to buffer overflow in h263dmx_process filters/reframe_h263.c:609
CVSS 7.8
GPAC MP4Box <2.1 - Memory Corruption
GPAC MP4Box 2.1-DEV-rev649-ga8f438d20 has a segment fault (/stack overflow) due to infinite recursion in Media_GetSample isomedia/media.c:662
CVSS 5.5
GPAC < 2.2.0 - Out-of-bounds Write in gf_media_nalu_add_emulation_bytes
GPAC MP4Box 2.1-DEV-rev649-ga8f438d20 is vulnerable to Buffer Overflow via media_tools/av_parsers.c:4988 in gf_media_nalu_add_emulation_bytes
CVSS 7.8
GPAC < 2.2.0 - Integer Overflow in isom_write.c
GPAC MP4Box 2.1-DEV-rev644-g5c4df2a67 is has an integer overflow in isomedia/isom_write.c
CVSS 7.8
GPAC < 2.2.0 - Buffer Overflow in gf_bs_read_data
GPAC MP4box 2.1-DEV-rev644-g5c4df2a67 is vulnerable to Buffer Overflow in gf_bs_read_data
CVSS 7.8
GPAC < 2.2.0 - Buffer Overflow in gf_hevc_read_vps_bs_internal
GPAC MP4Box 2.1-DEV-rev644-g5c4df2a67 is vulnerable to buffer overflow in function gf_hevc_read_vps_bs_internal of media_tools/av_parsers.c:8039
CVSS 7.8
GPAC < 2.2.0 - Buffer Overflow in hevc_parse_vps_extension
GPAC MP4Box 2.1-DEV-rev644-g5c4df2a67 is vulnerable to buffer overflow in function hevc_parse_vps_extension of media_tools/av_parsers.c:7662
CVSS 7.8
GPAC < 2.2.0 - Buffer Overflow in gf_hevc_read_sps_bs_internal
GPAC MP4box 2.1-DEV-rev617-g85ce76efd is vulnerable to Buffer Overflow in gf_hevc_read_sps_bs_internal function of media_tools/av_parsers.c:8273
CVSS 7.8
GPAC < 2.2.0 - Buffer Overflow in gf_hevc_read_sps_bs_internal
GPAC MP4box 2.1-DEV-rev593-g007bf61a0 is vulnerable to Buffer Overflow in gf_hevc_read_sps_bs_internal function of media_tools/av_parsers.c:8261
CVSS 7.8
GPAC < 2.2.0 - Buffer Overflow in eac3_update_channels Function
GPAC MP4box 2.1-DEV-rev593-g007bf61a0 is vulnerable to Buffer Overflow in eac3_update_channels function of media_tools/av_parsers.c:9113
CVSS 7.8
GPAC < 2.2.0 - Buffer Overflow in hevc_parse_vps_extension
GPAC MP4box 2.1-DEV-rev574-g9d5bb184b is vulnerable to Buffer overflow in hevc_parse_vps_extension function of media_tools/av_parsers.c
CVSS 7.8
GPAC MP4box <2.1 - Memory Corruption
GPAC MP4box 2.1-DEV-rev574-g9d5bb184b is vulnerable to Null pointer dereference via filters/dmx_m2ts.c:343 in m2tsdmx_declare_pid
CVSS 7.8
GPAC < 2.2.0 - Use-After-Free in m2tsdmx_declare_pid
GPAC MP4box 2.1-DEV-rev574-g9d5bb184b is vulnerable to heap use-after-free via filters/dmx_m2ts.c:470 in m2tsdmx_declare_pid
CVSS 7.8
GPAC < 2.2.0 - Integer Overflow in gf_hevc_read_sps_bs_internal
GPAC MP4box 2.1-DEV-rev574-g9d5bb184b is contains an Integer overflow vulnerability in gf_hevc_read_sps_bs_internal function of media_tools/av_parsers.c:8316
CVSS 7.1
GPAC < 2.2.0 - Buffer Overflow in gf_text_process_sub
GPAC MP4box 2.1-DEV-rev574-g9d5bb184b is vulnerable to Buffer Overflow in gf_text_process_sub function of filters/load_text.c
CVSS 7.8
GPAC < 2.2.0 - Buffer Overflow in gf_vvc_read_sps_bs_internal
GPAC MP4box 2.1-DEV-rev574-g9d5bb184b is vulnerable to Buffer Overflow via gf_vvc_read_sps_bs_internal function of media_tools/av_parsers.c
CVSS 7.8
GPAC < 2.2.0 - Buffer Overflow
GPAC MP4box 2.1-DEV-rev574-g9d5bb184b is vulnerable to Buffer Overflow.
CVSS 7.8
GPAC < 2.2.0 - Buffer Overflow in gf_vvc_read_pps_bs_internal
GPAC MP4box 2.1-DEV-rev574-g9d5bb184b has a Buffer overflow in gf_vvc_read_pps_bs_internal function of media_tools/av_parsers.c
CVSS 7.8
GPAC MP4Box <2.1 - Memory Corruption
GPAC MP4Box v2.1-DEV-rev574-g9d5bb184b contains a segmentation violation via the function gf_sm_load_init_swf at scene_manager/swf_parse.c
CVSS 5.5
By Source