Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2677▼ 656 respecto a la semana anterior
Críticas / altas1264▼ 294 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)244▼ 258 respecto a la semana anterior
483 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.77% | — | Gpac | 12/10/2021 | 17/6/2026 | An issue was discovered in gpac 0.8.0. The gf_media_nalu_remove_emulation_bytes function in av_parsers.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted input. | |
| Modificada | Media (5.5) | 0.77% | — | Gpac | 12/10/2021 | 17/6/2026 | An issue was discovered in gpac 0.8.0. The dump_data_hex function in box_dump.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted input. | |
| Modificada | Media (5.5) | 0.77% | — | Gpac | 12/10/2021 | 17/6/2026 | An issue was discovered in gpac 0.8.0. The GetGhostNum function in stbl_read.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted input. | |
| Modificada | Media (5.5) | 0.79% | — | Gpac | 12/10/2021 | 17/6/2026 | An issue was discovered in gpac 0.8.0. An invalid memory dereference exists in the function FixTrackID located in isom_intern.c, which allows attackers to cause a denial of service (DoS) via a crafted input. | |
| Modificada | Media (5.5) | 0.79% | — | Gpac | 12/10/2021 | 17/6/2026 | Memory leak in the senc_Parse function in MP4Box in gpac 0.8.0 allows attackers to cause a denial of service (DoS) via a crafted input. | |
| Modificada | Alta (7.5) | 1.3% | — | Gpac Mp4box | 1/10/2021 | 17/6/2026 | There is a stack buffer overflow in MP4Box v1.0.1 at src/filters/dmx_nhml.c:1008 in the nhmldmx_send_sample() function szXmlFrom parameter which leads to a denial of service vulnerability. | |
| Modificada | Alta (7.5) | 1.2% | — | Gpac Mp4box | 1/10/2021 | 17/6/2026 | There is a stack buffer overflow in MP4Box 1.1.0 at src/filters/dmx_nhml.c in nhmldmx_init_parsing which leads to a denial of service vulnerability. | |
| Modificada | Alta (7.5) | 1.2% | — | Gpac Mp4box | 1/10/2021 | 17/6/2026 | There is a stack buffer overflow in MP4Box v1.0.1 at src/filters/dmx_nhml.c:1004 in the nhmldmx_send_sample() function szXmlTo parameter which leads to a denial of service vulnerability. | |
| Modificada | Media (5.5) | 0.63% | — | Gpac | 22/9/2021 | 17/6/2026 | An issue was discovered in gpac 0.8.0. The stbl_GetSampleSize function in isomedia/stbl_read.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted media file. | |
| Modificada | Alta (7.1) | 0.73% | — | Gpac | 22/9/2021 | 17/6/2026 | An issue was discovered in gpac 0.8.0. The gf_hinter_track_process function in isom_hinter_track_process.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted media file | |
| Modificada | Media (5.5) | 0.63% | — | Gpac | 22/9/2021 | 17/6/2026 | An issue was discovered in gpac 0.8.0. The OD_ReadUTF8String function in odf_code.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted media file. | |
| Modificada | Alta (7.8) | 1.1% | — | Gpac | 20/9/2021 | 17/6/2026 | An issue was discovered in gpac through 20200801. A stack-buffer-overflow exists in the function DumpRawUIConfig located in odf_dump.c. It allows an attacker to cause code Execution. | |
| Modificada | Media (5.5) | 0.64% | — | Gpac | 20/9/2021 | 17/6/2026 | An issue was discovered in gpac through 20200801. A NULL pointer dereference exists in the function vwid_box_del located in box_code_base.c. It allows an attacker to cause Denial of Service. | |
| Modificada | Media (5.5) | 0.63% | — | Gpac | 20/9/2021 | 17/6/2026 | An issue was discovered in gpac through 20200801. A NULL pointer dereference exists in the function ilst_item_box_dump located in box_dump.c. It allows an attacker to cause Denial of Service. | |
| Modificada | Alta (7.8) | 1.3% | — | Gpac | 20/9/2021 | 17/6/2026 | Buffer overflow vulnerability in function gf_fprintf in os_file.c in gpac before 1.0.1 allows attackers to execute arbitrary code. The fixed version is 1.0.1. | |
| Modificada | Media (5.5) | 0.92% | — | Gpac | 13/9/2021 | 17/6/2026 | Memory leak in the gf_isom_get_root_od function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file. | |
| Modificada | Media (5.5) | 0.92% | — | Gpac | 13/9/2021 | 17/6/2026 | Memory leak in the infe_box_read function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file. | |
| Modificada | Media (5.5) | 0.99% | — | Gpac | 13/9/2021 | 17/6/2026 | Memory leak in the afra_box_read function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file. | |
| Modificada | Media (5.5) | 0.75% | — | Gpac | 13/9/2021 | 17/6/2026 | The gf_isom_vp_config_get function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command. | |
| Modificada | Media (5.5) | 0.75% | — | Gpac | 13/9/2021 | 17/6/2026 | The DumpTrackInfo function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command. | |
| Modificada | Media (5.5) | 0.99% | — | Gpac | 13/9/2021 | 17/6/2026 | Memory leak in the gf_isom_oinf_read_entry function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file. | |
| Modificada | Media (5.5) | 1.0% | — | Gpac | 13/9/2021 | 17/6/2026 | Memory leak in the def_parent_box_new function in MP4Box in GPAC 1.0.1 allows attackers to read memory via a crafted file. | |
| Modificada | Alta (7.8) | 1.3% | — | Gpac | 13/9/2021 | 17/6/2026 | Stack buffer overflow in the hevc_parse_vps_extension function in MP4Box in GPAC 1.0.1 allows attackers to cause a denial of service or execute arbitrary code via a crafted file. | |
| Modificada | Media (5.5) | 0.87% | — | Gpac | 13/9/2021 | 17/6/2026 | The trak_box_size function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command. | |
| Modificada | Media (5.5) | 0.87% | — | Gpac | 13/9/2021 | 17/6/2026 | The abst_box_size function in GPAC 1.0.1 allows attackers to cause a denial of service (NULL pointer dereference) via a crafted file in the MP4Box command. |