Vulnerabilities
Vulnerable Software
Gpac:  >> Gpac  >> 0.7.0  Security Vulnerabilities
A vulnerability was found in GPAC up to 2.4. It has been rated as problematic. Affected by this issue is the function gf_dash_download_init_segment of the file src/media_tools/dash_client.c. The manipulation of the argument base_init_url leads to null pointer dereference. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The patch is identified as 153ea314b6b053db17164f8bc3c7e1e460938eaa. It is recommended to apply a patch to fix this issue.
CVSS Score
5.3
EPSS Score
0.002
Published
2025-07-18
Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV.
CVSS Score
4.0
EPSS Score
0.001
Published
2024-01-08
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
CVSS Score
4.4
EPSS Score
0.001
Published
2024-01-08
An issue in GPAC v.2.2.1 and before allows a local attacker to cause a denial of service (DoS) via the ctts_box_read function of file src/isomedia/box_code_base.c.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-12-09
GPAC version 2.3-DEV-rev602-ged8424300-master in MP4Box contains a memory leak in NewSFDouble scenegraph/vrml_tools.c:300. This vulnerability may lead to a denial of service.
CVSS Score
5.3
EPSS Score
0.0
Published
2023-12-07
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3.0-DEV.
CVSS Score
4.0
EPSS Score
0.001
Published
2023-11-07
Denial of Service in GitHub repository gpac/gpac prior to 2.3.0-DEV.
CVSS Score
5.1
EPSS Score
0.0
Published
2023-10-16
NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3.0-DEV.
CVSS Score
4.4
EPSS Score
0.0
Published
2023-10-15
An issue in GPAC GPAC v.2.2.1 and before allows a local attacker to cause a denial of service via the Q_DecCoordOnUnitSphere function of file src/bifs/unquantize.c.
CVSS Score
5.5
EPSS Score
0.0
Published
2023-10-12
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2.
CVSS Score
4.0
EPSS Score
0.0
Published
2023-10-11


Contact Us

Shodan ® - All rights reserved