CVE-2019-7573
- EPSS 6.12%
- Published 07.02.2019 07:29:00
- Last modified 21.11.2024 04:48:20
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in audio/SDL_wave.c (inside the wNumCoef loop).
CVE-2019-7574
- EPSS 6.12%
- Published 07.02.2019 07:29:00
- Last modified 21.11.2024 04:48:21
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in IMA_ADPCM_decode in audio/SDL_wave.c.
CVE-2019-7575
- EPSS 2.23%
- Published 07.02.2019 07:29:00
- Last modified 21.11.2024 04:48:21
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer overflow in MS_ADPCM_decode in audio/SDL_wave.c.
CVE-2019-7576
- EPSS 5.67%
- Published 07.02.2019 07:29:00
- Last modified 21.11.2024 04:48:21
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a heap-based buffer over-read in InitMS_ADPCM in audio/SDL_wave.c (outside the wNumCoef loop).
CVE-2019-7577
- EPSS 6.12%
- Published 07.02.2019 07:29:00
- Last modified 21.11.2024 04:48:21
SDL (Simple DirectMedia Layer) through 1.2.15 and 2.x through 2.0.9 has a buffer over-read in SDL_LoadWAV_RW in audio/SDL_wave.c.
CVE-2018-20760
- EPSS 0.29%
- Published 06.02.2019 23:29:00
- Last modified 21.11.2024 04:02:06
In GPAC 0.7.1 and earlier, gf_text_get_utf8_line in media_tools/text_import.c in libgpac_static.a allows an out-of-bounds write because a certain -1 return value is mishandled.
CVE-2018-20761
- EPSS 0.25%
- Published 06.02.2019 23:29:00
- Last modified 21.11.2024 04:02:06
GPAC version 0.7.1 and earlier has a Buffer Overflow vulnerability in the gf_sm_load_init function in scene_manager.c in libgpac_static.a.
CVE-2018-20762
- EPSS 0.27%
- Published 06.02.2019 23:29:00
- Last modified 21.11.2024 04:02:06
GPAC version 0.7.1 and earlier has a buffer overflow vulnerability in the cat_multiple_files function in applications/mp4box/fileimport.c when MP4Box is used for a local directory containing crafted filenames.
CVE-2018-20763
- EPSS 0.29%
- Published 06.02.2019 23:29:00
- Last modified 21.11.2024 04:02:07
In GPAC 0.7.1 and earlier, gf_text_get_utf8_line in media_tools/text_import.c in libgpac_static.a allows an out-of-bounds write because of missing szLineConv bounds checking.
CVE-2019-7548
- EPSS 1.11%
- Published 06.02.2019 21:29:01
- Last modified 21.11.2024 04:48:18
SQLAlchemy 1.2.17 has SQL Injection when the group_by parameter can be controlled.