Vulnerabilities > Gpac > Gpac > 0.9.0.development.20191109

DATE CVE VULNERABILITY TITLE RISK
2022-03-30 CVE-2022-1172 NULL Pointer Dereference vulnerability in Gpac
Null Pointer Dereference Caused Segmentation Fault in GitHub repository gpac/gpac prior to 2.1.0-DEV.
network
gpac CWE-476
4.3
2022-03-21 CVE-2022-1035 NULL Pointer Dereference vulnerability in Gpac
Segmentation Fault caused by MP4Box -lsr in GitHub repository gpac/gpac prior to 2.1.0-DEV.
local
low complexity
gpac CWE-476
5.5
2022-02-04 CVE-2021-4043 NULL Pointer Dereference vulnerability in Gpac
NULL Pointer Dereference in GitHub repository gpac/gpac prior to 1.1.0.
local
low complexity
gpac CWE-476
5.5
2022-02-04 CVE-2022-24249 NULL Pointer Dereference vulnerability in Gpac
A Null Pointer Dereference vulnerability exists in GPAC 1.1.0 via the xtra_box_write function in /box_code_base.c, which causes a Denial of Service.
local
low complexity
gpac CWE-476
5.5
2022-01-13 CVE-2021-40567 Unspecified vulnerability in Gpac
Segmentation fault vulnerability exists in Gpac through 1.0.1 via the gf_odf_size_descriptor function in desc_private.c when using mp4box, which causes a denial of service.
local
low complexity
gpac
5.5
2022-01-13 CVE-2021-40568 Classic Buffer Overflow vulnerability in Gpac
A buffer overflow vulnerability exists in Gpac through 1.0.1 via a malformed MP4 file in the svc_parse_slice function in av_parsers.c, which allows attackers to cause a denial of service, even code execution and escalation of privileges.
local
low complexity
gpac CWE-120
7.8
2022-01-13 CVE-2021-40569 Double Free vulnerability in Gpac
The binary MP4Box in Gpac through 1.0.1 has a double-free vulnerability in the iloc_entry_del funciton in box_code_meta.c, which allows attackers to cause a denial of service.
local
low complexity
gpac CWE-415
5.5
2022-01-12 CVE-2021-40562 Incorrect Comparison vulnerability in Gpac
A Segmentation fault caused by a floating point exception exists in Gpac through 1.0.1 using mp4box via the naludmx_enqueue_or_dispatch function in reframe_nalu.c, which causes a denial of service.
local
low complexity
gpac CWE-697
5.5
2022-01-12 CVE-2021-40563 NULL Pointer Dereference vulnerability in Gpac
A Segmentation fault exists casued by null pointer dereference exists in Gpac through 1.0.1 via the naludmx_create_avc_decoder_config function in reframe_nalu.c when using mp4box, which causes a denial of service.
local
low complexity
gpac CWE-476
5.5
2022-01-12 CVE-2021-40564 NULL Pointer Dereference vulnerability in Gpac
A Segmentation fault caused by null pointer dereference vulnerability eists in Gpac through 1.0.2 via the avc_parse_slice function in av_parsers.c when using mp4box, which causes a denial of service.
local
low complexity
gpac CWE-476
5.5