CVE-2021-32132
- EPSS 0.26%
- Veröffentlicht 13.09.2021 15:15:24
- Zuletzt bearbeitet 21.11.2024 06:06:51
The abst_box_size function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
CVE-2021-32135
- EPSS 0.26%
- Veröffentlicht 13.09.2021 15:15:24
- Zuletzt bearbeitet 21.11.2024 06:06:51
The trak_box_size function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
CVE-2021-32137
- EPSS 0.54%
- Veröffentlicht 13.09.2021 14:15:09
- Zuletzt bearbeitet 21.11.2024 06:06:52
Heap buffer overflow in the URL_GetProtocolType function in MP4Box in GPAC 1.0.1 allows attackers to cause a denial of service or execute arbitrary code via a crafted file.
CVE-2021-32134
- EPSS 0.27%
- Veröffentlicht 13.09.2021 14:15:07
- Zuletzt bearbeitet 21.11.2024 06:06:51
The gf_odf_desc_copy function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command.
CVE-2021-32136
- EPSS 0.54%
- Veröffentlicht 13.09.2021 13:15:07
- Zuletzt bearbeitet 21.11.2024 06:06:52
Heap buffer overflow in the print_udta function in MP4Box in GPAC 1.0.1 allows attackers to cause a denial of service or execute arbitrary code via a crafted file.
CVE-2020-19750
- EPSS 0.34%
- Veröffentlicht 07.09.2021 20:15:07
- Zuletzt bearbeitet 21.11.2024 05:09:22
An issue was discovered in gpac 0.8.0. The strdup function in box_code_base.c has a heap-based buffer over-read.
CVE-2020-19751
- EPSS 0.44%
- Veröffentlicht 07.09.2021 20:15:07
- Zuletzt bearbeitet 21.11.2024 05:09:22
An issue was discovered in gpac 0.8.0. The gf_odf_del_ipmp_tool function in odf_code.c has a heap-based buffer over-read.
CVE-2021-21840
- EPSS 0.25%
- Veröffentlicht 25.08.2021 19:15:09
- Zuletzt bearbeitet 21.11.2024 05:49:05
An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library v1.0.1. A specially crafted MPEG-4 input used to process an atom using the “saio” FOURCC code cause an integ...
CVE-2021-21841
- EPSS 0.25%
- Veröffentlicht 25.08.2021 19:15:09
- Zuletzt bearbeitet 21.11.2024 05:49:05
An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library v1.0.1. A specially crafted MPEG-4 input when reading an atom using the 'sbgp' FOURCC code can cause an inte...
CVE-2021-21842
- EPSS 0.42%
- Veröffentlicht 25.08.2021 19:15:09
- Zuletzt bearbeitet 21.11.2024 05:49:05
An exploitable integer overflow vulnerability exists within the MPEG-4 decoding functionality of the GPAC Project on Advanced Content library v1.0.1. A specially crafted MPEG-4 input can cause an integer overflow when processing an atom using the 'ss...