CVE-2023-5586 – NULL Pointer Dereference in gpac/gpac
https://notcve.org/view.php?id=CVE-2023-5586
NULL Pointer Dereference in GitHub repository gpac/gpac prior to 2.3.0-DEV. Eliminación de referencia del puntero NULL en el repositorio de GitHub gpac/gpac anterior a 2.3.0-DEV. • https://github.com/gpac/gpac/commit/ca1b48f0abe71bf81a58995d7d75dc27f5a17ddc https://huntr.dev/bounties/d2a6ea71-3555-47a6-9b18-35455d103740 • CWE-476: NULL Pointer Dereference •
CVE-2023-42298
https://notcve.org/view.php?id=CVE-2023-42298
An issue in GPAC GPAC v.2.2.1 and before allows a local attacker to cause a denial of service via the Q_DecCoordOnUnitSphere function of file src/bifs/unquantize.c. Un problema en GPAC GPAC v.2.2.1 y anteriores permite que un atacante local provoque una Denegación de Servicio (DoS) a través de la función Q_DecCoordOnUnitSphere del archivo src/bifs/unquantize.c. • https://github.com/gpac/gpac/issues/2567 • CWE-190: Integer Overflow or Wraparound •
CVE-2023-5520 – Out-of-bounds Read in gpac/gpac
https://notcve.org/view.php?id=CVE-2023-5520
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.2.2. Fuera de los Límites Leído en el repositorio de GitHub gpac/gpac anterior a 2.2.2. • https://github.com/gpac/gpac/commit/5692dc729491805e0e5f55c21d50ba1e6b19e88e https://huntr.dev/bounties/681e42d0-18d4-4ebc-aba0-c5b0f77ac74a • CWE-125: Out-of-bounds Read •
CVE-2023-5377 – Out-of-bounds Read in gpac/gpac
https://notcve.org/view.php?id=CVE-2023-5377
Out-of-bounds Read in GitHub repository gpac/gpac prior to v2.2.2-DEV. Lectura fuera de límites en el repositorio de GitHub gpac/gpac anterior a v2.2.2-DEV. • https://github.com/gpac/gpac/commit/8e9d6b38c036a97020c462ad48e1132e0ddc57ce https://huntr.dev/bounties/fe778df4-3867-41d6-954b-211c81bccbbf • CWE-125: Out-of-bounds Read •
CVE-2023-41000
https://notcve.org/view.php?id=CVE-2023-41000
GPAC through 2.2.1 has a use-after-free vulnerability in the function gf_bifs_flush_command_list in bifs/memory_decoder.c. GPAC hasta la versión 2.2.1 tiene una vulnerabilidad de use-after-free en la función gf_bifs_flush_command_list en bifs/memory_decoder.c. • https://github.com/gpac/gpac/issues/2550 • CWE-416: Use After Free •