CVE-2025-7797
- EPSS 0.17%
- Veröffentlicht 18.07.2025 17:44:07
- Zuletzt bearbeitet 03.10.2025 16:43:58
A vulnerability was found in GPAC up to 2.4. It has been rated as problematic. Affected by this issue is the function gf_dash_download_init_segment of the file src/media_tools/dash_client.c. The manipulation of the argument base_init_url leads to nul...
CVE-2025-25723
- EPSS 0.03%
- Veröffentlicht 28.02.2025 23:15:11
- Zuletzt bearbeitet 25.09.2025 13:27:40
Buffer Overflow vulnerability in GPAC version 2.5 allows a local attacker to execute arbitrary code.
CVE-2024-57184
- EPSS 0.03%
- Veröffentlicht 24.01.2025 14:15:31
- Zuletzt bearbeitet 27.06.2025 19:34:05
An issue was discovered in GPAC v0.8.0, as demonstrated by MP4Box. It contains a heap-based buffer overflow in gf_m2ts_process_pmt in media_tools/mpegts.c:2163 that can cause a denial of service (DOS) via a crafted MP4 file.
CVE-2024-50664
- EPSS 0.02%
- Veröffentlicht 23.01.2025 22:15:13
- Zuletzt bearbeitet 11.02.2025 20:57:42
gpac 2.4 contains a heap-buffer-overflow at isomedia/sample_descs.c:1799 in gf_isom_new_mpha_description in gpac/MP4Box.
CVE-2024-50665
- EPSS 0.02%
- Veröffentlicht 23.01.2025 22:15:13
- Zuletzt bearbeitet 11.02.2025 20:51:48
gpac 2.4 contains a SEGV at src/isomedia/drm_sample.c:1562:96 in isom_cenc_get_sai_by_saiz_saio in MP4Box.
CVE-2023-4679
- EPSS 0.03%
- Veröffentlicht 15.11.2024 11:15:08
- Zuletzt bearbeitet 19.11.2024 15:54:32
A use after free vulnerability exists in GPAC version 2.3-DEV-revrelease, specifically in the gf_filterpacket_del function in filter_core/filter.c at line 38. This vulnerability can lead to a double-free condition, which may cause the application to ...
CVE-2024-6063
- EPSS 0.04%
- Veröffentlicht 17.06.2024 21:15:51
- Zuletzt bearbeitet 21.11.2024 09:48:52
A vulnerability was found in GPAC 2.5-DEV-rev228-g11067ea92-master. It has been classified as problematic. This affects the function m2tsdmx_on_event of the file src/filters/dmx_m2ts.c of the component MP4Box. The manipulation leads to null pointer d...
CVE-2024-6064
- EPSS 0.04%
- Veröffentlicht 17.06.2024 21:15:51
- Zuletzt bearbeitet 21.11.2024 09:48:52
A vulnerability was found in GPAC 2.5-DEV-rev228-g11067ea92-master. It has been declared as problematic. This vulnerability affects the function xmt_node_end of the file src/scene_manager/loader_xmt.c of the component MP4Box. The manipulation leads t...
CVE-2024-6062
- EPSS 0.04%
- Veröffentlicht 17.06.2024 20:15:15
- Zuletzt bearbeitet 21.11.2024 09:48:52
A vulnerability was found in GPAC 2.5-DEV-rev228-g11067ea92-master and classified as problematic. Affected by this issue is the function swf_svg_add_iso_sample of the file src/filters/load_text.c of the component MP4Box. The manipulation leads to nul...
CVE-2024-6061
- EPSS 0.04%
- Veröffentlicht 17.06.2024 20:15:14
- Zuletzt bearbeitet 21.11.2024 09:48:52
A vulnerability has been found in GPAC 2.5-DEV-rev228-g11067ea92-master and classified as problematic. Affected by this vulnerability is the function isoffin_process of the file src/filters/isoffin_read.c of the component MP4Box. The manipulation lea...