CVE-2025-70307
- EPSS 0.03%
- Veröffentlicht 15.01.2026 00:00:00
- Zuletzt bearbeitet 30.01.2026 17:58:53
A stack overflow in the dump_ttxt_sample function of GPAC v2.4.0 allows attackers to cause a Denial of Service (DoS) via a crafted packet.
CVE-2025-70299
- EPSS 0.05%
- Veröffentlicht 15.01.2026 00:00:00
- Zuletzt bearbeitet 30.01.2026 17:58:42
A heap overflow in the avi_parse_input_file() function of GPAC v2.4.0 allows attackers to cause a Denial of Service (DoS) via a crafted AVI file.
CVE-2025-70302
- EPSS 0.02%
- Veröffentlicht 15.01.2026 00:00:00
- Zuletzt bearbeitet 23.01.2026 19:11:49
A heap overflow in the ghi_dmx_declare_opid_bin() function of GPAC v2.4.0 allows attackers to cause a Denial of Service (DoS) via a crafted input.
CVE-2025-70303
- EPSS 0.02%
- Veröffentlicht 15.01.2026 00:00:00
- Zuletzt bearbeitet 23.01.2026 19:11:35
A heap overflow in the uncv_parse_config() function of GPAC v2.4.0 allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.
CVE-2025-7797
- EPSS 0.15%
- Veröffentlicht 18.07.2025 17:44:07
- Zuletzt bearbeitet 03.10.2025 16:43:58
A vulnerability was found in GPAC up to 2.4. It has been rated as problematic. Affected by this issue is the function gf_dash_download_init_segment of the file src/media_tools/dash_client.c. The manipulation of the argument base_init_url leads to nul...
CVE-2025-25723
- EPSS 0.04%
- Veröffentlicht 28.02.2025 23:15:11
- Zuletzt bearbeitet 25.09.2025 13:27:40
Buffer Overflow vulnerability in GPAC version 2.5 allows a local attacker to execute arbitrary code.
CVE-2024-57184
- EPSS 0.03%
- Veröffentlicht 24.01.2025 14:15:31
- Zuletzt bearbeitet 27.06.2025 19:34:05
An issue was discovered in GPAC v0.8.0, as demonstrated by MP4Box. It contains a heap-based buffer overflow in gf_m2ts_process_pmt in media_tools/mpegts.c:2163 that can cause a denial of service (DOS) via a crafted MP4 file.
CVE-2024-50664
- EPSS 0.03%
- Veröffentlicht 23.01.2025 22:15:13
- Zuletzt bearbeitet 11.02.2025 20:57:42
gpac 2.4 contains a heap-buffer-overflow at isomedia/sample_descs.c:1799 in gf_isom_new_mpha_description in gpac/MP4Box.
CVE-2024-50665
- EPSS 0.03%
- Veröffentlicht 23.01.2025 22:15:13
- Zuletzt bearbeitet 11.02.2025 20:51:48
gpac 2.4 contains a SEGV at src/isomedia/drm_sample.c:1562:96 in isom_cenc_get_sai_by_saiz_saio in MP4Box.
CVE-2023-4679
- EPSS 0.04%
- Veröffentlicht 15.11.2024 11:15:08
- Zuletzt bearbeitet 19.11.2024 15:54:32
A use after free vulnerability exists in GPAC version 2.3-DEV-revrelease, specifically in the gf_filterpacket_del function in filter_core/filter.c at line 38. This vulnerability can lead to a double-free condition, which may cause the application to ...