GPAC 2.2.1

CPE Details

GPAC 2.2.1
2.2.1
2023-09-28
11h39 +00:00
2023-09-28
11h39 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:gpac:gpac:2.2.1:*:*:*:*:*:*:*

Informations

Vendor

gpac

Product

gpac

Version

2.2.1

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2025-7797 2025-07-18 17h44 +00:00 A vulnerability was found in GPAC up to 2.4. It has been rated as problematic. Affected by this issue is the function gf_dash_download_init_segment of the file src/media_tools/dash_client.c. The manipulation of the argument base_init_url leads to null pointer dereference. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The patch is identified as 153ea314b6b053db17164f8bc3c7e1e460938eaa. It is recommended to apply a patch to fix this issue.
6.9
Moyen
CVE-2024-24265 2024-02-05 00h00 +00:00 gpac v2.2.1 was discovered to contain a memory leak via the dst_props variable in the gf_filter_pid_merge_properties_internal function.
7.5
Haute
CVE-2024-24266 2024-02-05 00h00 +00:00 gpac v2.2.1 was discovered to contain a Use-After-Free (UAF) vulnerability via the dasher_configure_pid function at /src/filters/dasher.c.
7.5
Haute
CVE-2024-24267 2024-02-05 00h00 +00:00 gpac v2.2.1 (fixed in v2.4.0) was discovered to contain a memory leak via the gfio_blob variable in the gf_fileio_from_blob function.
7.5
Haute
CVE-2024-0322 2024-01-08 12h38 +00:00 Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
9.1
Critique
CVE-2024-0321 2024-01-08 12h10 +00:00 Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV.
9.8
Critique
CVE-2023-47465 2023-12-08 23h00 +00:00 An issue in GPAC v.2.2.1 and before allows a local attacker to cause a denial of service (DoS) via the ctts_box_read function of file src/isomedia/box_code_base.c.
5.5
Moyen
CVE-2023-46871 2023-12-06 23h00 +00:00 GPAC version 2.3-DEV-rev602-ged8424300-master in MP4Box contains a memory leak in NewSFDouble scenegraph/vrml_tools.c:300. This vulnerability may lead to a denial of service.
5.3
Moyen
CVE-2023-5998 2023-11-07 18h45 +00:00 Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3.0-DEV.
7.5
Haute
CVE-2023-5595 2023-10-16 08h25 +00:00 Denial of Service in GitHub repository gpac/gpac prior to 2.3.0-DEV.
5.5
Moyen
CVE-2023-5586 2023-10-15 00h28 +00:00 NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3.0-DEV.
7.8
Haute
CVE-2023-42298 2023-10-11 22h00 +00:00 An issue in GPAC GPAC v.2.2.1 and before allows a local attacker to cause a denial of service via the Q_DecCoordOnUnitSphere function of file src/bifs/unquantize.c.
5.5
Moyen
CVE-2023-5520 2023-10-11 11h56 +00:00 Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2.
7.7
Haute
CVE-2023-5377 2023-10-04 09h53 +00:00 Out-of-bounds Read in GitHub repository gpac/gpac prior to v2.2.2-DEV.
7.1
Haute
CVE-2023-41000 2023-09-10 22h00 +00:00 GPAC through 2.2.1 has a use-after-free vulnerability in the function gf_bifs_flush_command_list in bifs/memory_decoder.c.
5.5
Moyen
CVE-2023-4778 2023-09-05 15h43 +00:00 Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
5.5
Moyen
CVE-2023-4758 2023-09-04 15h47 +00:00 Buffer Over-read in GitHub repository gpac/gpac prior to 2.3-DEV.
5.5
Moyen
CVE-2023-4755 2023-09-04 13h46 +00:00 Use After Free in GitHub repository gpac/gpac prior to 2.3-DEV.
5.5
Moyen
CVE-2023-4756 2023-09-04 08h24 +00:00 Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV.
5.5
Moyen
CVE-2023-4754 2023-09-04 08h24 +00:00 Out-of-bounds Write in GitHub repository gpac/gpac prior to 2.3-DEV.
5.5
Moyen
CVE-2023-4722 2023-09-01 15h27 +00:00 Integer Overflow or Wraparound in GitHub repository gpac/gpac prior to 2.3-DEV.
5.5
Moyen
CVE-2023-4721 2023-09-01 15h27 +00:00 Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV.
5.5
Moyen
CVE-2023-4720 2023-09-01 15h27 +00:00 Floating Point Comparison with Incorrect Operator in GitHub repository gpac/gpac prior to 2.3-DEV.
5.5
Moyen
CVE-2023-4683 2023-08-31 15h54 +00:00 NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3-DEV.
5.5
Moyen
CVE-2023-4682 2023-08-31 15h54 +00:00 Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV.
5.5
Moyen
CVE-2023-4681 2023-08-31 15h53 +00:00 NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3-DEV.
5.5
Moyen
CVE-2023-4678 2023-08-31 15h47 +00:00 Divide By Zero in GitHub repository gpac/gpac prior to 2.3-DEV.
5.5
Moyen
CVE-2023-3523 2023-07-06 09h53 +00:00 Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2.
7.1
Haute
CVE-2023-3291 2023-06-15 22h00 +00:00 Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.2.
3.3
Bas
CVE-2023-3012 2023-05-30 22h00 +00:00 NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.2.2.
7.8
Haute
CVE-2023-3013 2023-05-30 22h00 +00:00 Unchecked Return Value in GitHub repository gpac/gpac prior to 2.2.2.
7.1
Haute
CVE-2023-2837 2023-05-21 22h00 +00:00 Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.2.2.
5.5
Moyen
CVE-2023-2838 2023-05-21 22h00 +00:00 Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2.
9.1
Critique
CVE-2023-2839 2023-05-21 22h00 +00:00 Divide By Zero in GitHub repository gpac/gpac prior to 2.2.2.
7.5
Haute
CVE-2023-1655 2023-03-27 00h00 +00:00 Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.4.0.
7.8
Haute
CVE-2023-0817 2023-02-13 00h00 +00:00 Buffer Over-read in GitHub repository gpac/gpac prior to v2.3.0-DEV.
7.8
Haute
CVE-2023-0818 2023-02-13 00h00 +00:00 Off-by-one Error in GitHub repository gpac/gpac prior to v2.3.0-DEV.
5.5
Moyen
CVE-2023-0819 2023-02-13 00h00 +00:00 Heap-based Buffer Overflow in GitHub repository gpac/gpac prior to v2.3.0-DEV.
7.8
Haute
CVE-2022-29340 2022-05-05 10h46 +00:00 GPAC 2.1-DEV-rev87-g053aae8-master. has a Null Pointer Dereference vulnerability in gf_isom_parse_movie_boxes_internal due to improper return value handling of GF_SKIP_BOX, which causes a Denial of Service. This vulnerability was fixed in commit 37592ad.
7.5
Haute
CVE-2022-29339 2022-05-05 10h44 +00:00 In GPAC 2.1-DEV-rev87-g053aae8-master, function BS_ReadByte() in utils/bitstream.c has a failed assertion, which causes a Denial of Service. This vulnerability was fixed in commit 9ea93a2.
7.5
Haute