Vulnerabilities > Gpac

DATE CVE VULNERABILITY TITLE RISK
2021-09-20 CVE-2021-32268 Out-of-bounds Write vulnerability in Gpac
Buffer overflow vulnerability in function gf_fprintf in os_file.c in gpac before 1.0.1 allows attackers to execute arbitrary code.
network
gpac CWE-787
6.8
2021-09-20 CVE-2021-32269 NULL Pointer Dereference vulnerability in Gpac
An issue was discovered in gpac through 20200801.
local
low complexity
gpac CWE-476
5.5
2021-09-20 CVE-2021-32270 NULL Pointer Dereference vulnerability in Gpac
An issue was discovered in gpac through 20200801.
local
low complexity
gpac CWE-476
5.5
2021-09-20 CVE-2021-32271 Out-of-bounds Write vulnerability in Gpac
An issue was discovered in gpac through 20200801.
local
low complexity
gpac CWE-787
7.8
2021-09-13 CVE-2021-32138 NULL Pointer Dereference vulnerability in Gpac 1.0.1
The DumpTrackInfo function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
network
gpac CWE-476
4.3
2021-09-13 CVE-2021-32139 NULL Pointer Dereference vulnerability in Gpac 1.0.1
The gf_isom_vp_config_get function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
network
gpac CWE-476
4.3
2021-09-13 CVE-2021-33361 Memory Leak vulnerability in Gpac 1.0.1
Memory leak in the afra_box_read function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.
local
low complexity
gpac CWE-401
5.5
2021-09-13 CVE-2021-33363 Memory Leak vulnerability in Gpac 1.0.1
Memory leak in the infe_box_read function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.
local
low complexity
gpac CWE-401
5.5
2021-09-13 CVE-2021-33365 Memory Leak vulnerability in Gpac 1.0.1
Memory leak in the gf_isom_get_root_od function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.
local
low complexity
gpac CWE-401
5.5
2021-09-13 CVE-2021-33362 Out-of-bounds Write vulnerability in Gpac 1.0.1
Stack buffer overflow in the hevc_parse_vps_extension function in MP4Box in GPAC 1.0.1 allows attackers to cause a denial of service or execute arbitrary code via a crafted file.
network
gpac CWE-787
6.8