CVE-2022-46489
https://notcve.org/view.php?id=CVE-2022-46489
GPAC version 2.1-DEV-rev505-gb9577e6ad-master was discovered to contain a memory leak via the gf_isom_box_parse_ex function at box_funcs.c. • https://github.com/gpac/gpac/issues/2328 • CWE-401: Missing Release of Memory after Effective Lifetime •
CVE-2022-47094
https://notcve.org/view.php?id=CVE-2022-47094
GPAC MP4box 2.1-DEV-rev574-g9d5bb184b is vulnerable to Null pointer dereference via filters/dmx_m2ts.c:343 in m2tsdmx_declare_pid • https://github.com/gpac/gpac/issues/2345 https://www.debian.org/security/2023/dsa-5411 • CWE-476: NULL Pointer Dereference •
CVE-2022-46490
https://notcve.org/view.php?id=CVE-2022-46490
GPAC version 2.1-DEV-rev505-gb9577e6ad-master was discovered to contain a memory leak via the afrt_box_read function at box_code_adobe.c. • https://github.com/gpac/gpac/issues/2327 • CWE-401: Missing Release of Memory after Effective Lifetime •
CVE-2022-47087
https://notcve.org/view.php?id=CVE-2022-47087
GPAC MP4box 2.1-DEV-rev574-g9d5bb184b has a Buffer overflow in gf_vvc_read_pps_bs_internal function of media_tools/av_parsers.c • https://github.com/gpac/gpac/issues/2339 • CWE-120: Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') •
CVE-2022-47086
https://notcve.org/view.php?id=CVE-2022-47086
GPAC MP4Box v2.1-DEV-rev574-g9d5bb184b contains a segmentation violation via the function gf_sm_load_init_swf at scene_manager/swf_parse.c • https://github.com/gpac/gpac/issues/2337 https://www.debian.org/security/2023/dsa-5411 •