CVE-2024-28319
- EPSS 0.02%
- Published 15.03.2024 15:15:09
- Last modified 26.09.2025 19:17:42
gpac 2.3-DEV-rev921-g422b78ecf-master was discovered to contain an out of boundary read vulnerability via gf_dash_setup_period media_tools/dash_client.c:6374
CVE-2024-28318
- EPSS 0.08%
- Published 15.03.2024 15:15:08
- Last modified 26.09.2025 19:17:57
gpac 2.3-DEV-rev921-g422b78ecf-master was discovered to contain a out of boundary write vulnerability via swf_get_string at scene_manager/swf_parse.c:325
CVE-2023-46426
- EPSS 2.72%
- Published 09.03.2024 06:15:50
- Last modified 26.09.2025 19:18:21
Heap-based Buffer Overflow vulnerability in gpac version 2.3-DEV-rev588-g7edc40fee-master, allows remote attackers to execute arbitrary code and cause a denial of service (DoS) via gf_fwrite component in at utils/os_file.c.
CVE-2023-46427
- EPSS 1.62%
- Published 09.03.2024 06:15:50
- Last modified 26.09.2025 19:18:08
An issue was discovered in gpac version 2.3-DEV-rev588-g7edc40fee-master, allows remote attackers to execute arbitrary code, cause a denial of service (DoS), and obtain sensitive information via null pointer deference in gf_dash_setup_period componen...
CVE-2024-24265
- EPSS 0.17%
- Published 05.02.2024 18:15:52
- Last modified 09.05.2025 18:16:03
gpac v2.2.1 was discovered to contain a memory leak via the dst_props variable in the gf_filter_pid_merge_properties_internal function.
CVE-2024-24266
- EPSS 0.17%
- Published 05.02.2024 18:15:52
- Last modified 05.06.2025 19:15:27
gpac v2.2.1 was discovered to contain a Use-After-Free (UAF) vulnerability via the dasher_configure_pid function at /src/filters/dasher.c.
CVE-2024-24267
- EPSS 0.24%
- Published 05.02.2024 18:15:52
- Last modified 26.09.2025 13:08:34
gpac v2.2.1 (fixed in v2.4.0) was discovered to contain a memory leak via the gfio_blob variable in the gf_fileio_from_blob function.
CVE-2024-22749
- EPSS 0.12%
- Published 25.01.2024 16:15:09
- Last modified 16.06.2025 19:15:31
GPAC v2.3 was detected to contain a buffer overflow via the function gf_isom_new_generic_sample_description function in the isomedia/isom_write.c:4577
CVE-2023-50120
- EPSS 0.07%
- Published 10.01.2024 09:15:44
- Last modified 17.06.2025 16:15:26
MP4Box GPAC version 2.3-DEV-rev636-gfbd7e13aa-master was discovered to contain an infinite loop in the function av1_uvlc at media_tools/av_parsers.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.
CVE-2024-0321
- EPSS 0.07%
- Published 08.01.2024 13:15:09
- Last modified 21.11.2024 08:46:19
Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV.