Vulnerabilities
Vulnerable Software
Gpac:  >> Gpac  >> 0.8.0  Security Vulnerabilities
A Segmentation fault caused by a null pointer dereference vulnerability exists in Gpac through 1.0.1 via the gf_avc_parse_nalu function in av_parsers.c when using mp4box, which causes a denial of service.
CVSS Score
5.5
EPSS Score
0.001
Published
2022-01-12
A Segmentation fault casued by heap use after free vulnerability exists in Gpac through 1.0.1 via the mpgviddmx_process function in reframe_mpgvid.c when using mp4box, which causes a denial of service.
CVSS Score
5.5
EPSS Score
0.002
Published
2022-01-12
A null pointer deference vulnerability exists in gpac through 1.0.1 via the naludmx_parse_nal_avc function in reframe_nalu, which allows a denail of service.
CVSS Score
5.5
EPSS Score
0.001
Published
2022-01-12
A Null pointer dereference vulnerability exits in MP4Box - GPAC version 0.8.0-rev177-g51a8ef874-master via the gf_isom_get_track_id function, which causes a denial of service.
CVSS Score
5.5
EPSS Score
0.001
Published
2022-01-10
Memory leak in the senc_Parse function in MP4Box in gpac 0.8.0 allows attackers to cause a denial of service (DoS) via a crafted input.
CVSS Score
5.5
EPSS Score
0.001
Published
2021-10-12
An issue was discovered in gpac 0.8.0. An invalid memory dereference exists in the function FixTrackID located in isom_intern.c, which allows attackers to cause a denial of service (DoS) via a crafted input.
CVSS Score
5.5
EPSS Score
0.002
Published
2021-10-12
An issue was discovered in gpac 0.8.0. The GetGhostNum function in stbl_read.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted input.
CVSS Score
5.5
EPSS Score
0.001
Published
2021-10-12
An issue was discovered in gpac 0.8.0. The dump_data_hex function in box_dump.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted input.
CVSS Score
5.5
EPSS Score
0.001
Published
2021-10-12
An issue was discovered in gpac 0.8.0. The gf_media_nalu_remove_emulation_bytes function in av_parsers.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted input.
CVSS Score
5.5
EPSS Score
0.001
Published
2021-10-12
Memory leak in the sgpd_parse_entry function in MP4Box in gpac 0.8.0 allows attackers to cause a denial of service (DoS) via a crafted input.
CVSS Score
5.5
EPSS Score
0.002
Published
2021-10-12


Contact Us

Shodan ® - All rights reserved