Vulnerabilities > Gpac > Medium

DATE CVE VULNERABILITY TITLE RISK
2021-09-22 CVE-2020-23266 Out-of-bounds Write vulnerability in Gpac 0.8.0
An issue was discovered in gpac 0.8.0.
local
low complexity
gpac CWE-787
5.5
2021-09-22 CVE-2020-23269 Out-of-bounds Write vulnerability in Gpac 0.8.0
An issue was discovered in gpac 0.8.0.
local
low complexity
gpac CWE-787
5.5
2021-09-20 CVE-2021-32269 NULL Pointer Dereference vulnerability in Gpac
An issue was discovered in gpac through 20200801.
local
low complexity
gpac CWE-476
5.5
2021-09-20 CVE-2021-32270 NULL Pointer Dereference vulnerability in Gpac
An issue was discovered in gpac through 20200801.
local
low complexity
gpac CWE-476
5.5
2021-09-13 CVE-2021-32138 NULL Pointer Dereference vulnerability in Gpac 1.0.1
The DumpTrackInfo function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
local
low complexity
gpac CWE-476
5.5
2021-09-13 CVE-2021-32139 NULL Pointer Dereference vulnerability in Gpac 1.0.1
The gf_isom_vp_config_get function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
local
low complexity
gpac CWE-476
5.5
2021-09-13 CVE-2021-33361 Memory Leak vulnerability in Gpac 1.0.1
Memory leak in the afra_box_read function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.
local
low complexity
gpac CWE-401
5.5
2021-09-13 CVE-2021-33363 Memory Leak vulnerability in Gpac 1.0.1
Memory leak in the infe_box_read function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.
local
low complexity
gpac CWE-401
5.5
2021-09-13 CVE-2021-33365 Memory Leak vulnerability in Gpac 1.0.1
Memory leak in the gf_isom_get_root_od function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.
local
low complexity
gpac CWE-401
5.5
2021-09-13 CVE-2021-33364 Memory Leak vulnerability in Gpac 1.0.1
Memory leak in the def_parent_box_new function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file.
local
low complexity
gpac CWE-401
5.5