CVE-2019-12482
https://notcve.org/view.php?id=CVE-2019-12482
An issue was discovered in GPAC 0.7.1. There is a NULL pointer dereference in the function gf_isom_get_original_format_type at isomedia/drm_sample.c in libgpac.a, as demonstrated by MP4Box. Se descubrio un problema en GPAC 0.7.1. Hay una diferencia de el puntero NULL en la función gf_isom_get_original_format_type at isomedia/drm_sample.c in libgpac.a, como desmuestra MP4Box • https://github.com/gpac/gpac/issues/1249 https://lists.debian.org/debian-lts-announce/2019/06/msg00030.html • CWE-476: NULL Pointer Dereference •
CVE-2019-12481
https://notcve.org/view.php?id=CVE-2019-12481
An issue was discovered in GPAC 0.7.1. There is a NULL pointer dereference in the function GetESD at isomedia/track.c in libgpac.a, as demonstrated by MP4Box. Se descubrió un problema en GPAC 0.7.1. Hay una diferencia de el puntero NULL en la función GetESD en isomedia/track.c en libgpac.a, como demuestra MP4Box. • https://github.com/gpac/gpac/issues/1249 https://lists.debian.org/debian-lts-announce/2019/06/msg00030.html • CWE-476: NULL Pointer Dereference •
CVE-2019-11222
https://notcve.org/view.php?id=CVE-2019-11222
gf_bin128_parse in utils/os_divers.c in GPAC 0.7.1 has a buffer overflow issue for the crypt feature when encountering a crafted_drm_file.xml file. gf_bin128_parse in utils/os_divers.c en GPAC 0.7.1 tiene un problema de desbordamiento de búfer para la funcionalidad criptográfica cuando se encuentra con un archivo crafted_drm_file.xml. • https://github.com/gpac/gpac/commit/f3698bb1bce62402805c3fda96551a23101a32f9 https://github.com/gpac/gpac/issues/1204 https://github.com/gpac/gpac/issues/1205 https://lists.debian.org/debian-lts-announce/2019/04/msg00025.html • CWE-787: Out-of-bounds Write •
CVE-2019-11221
https://notcve.org/view.php?id=CVE-2019-11221
GPAC 0.7.1 has a buffer overflow issue in gf_import_message() in media_import.c. GPAC 0.7.1 presenta un problema de desbordamiento de buffer en gf_import_message() in media_import.c. • https://github.com/gpac/gpac/issues/1203 https://lists.debian.org/debian-lts-announce/2019/04/msg00025.html • CWE-787: Out-of-bounds Write •
CVE-2018-20760
https://notcve.org/view.php?id=CVE-2018-20760
In GPAC 0.7.1 and earlier, gf_text_get_utf8_line in media_tools/text_import.c in libgpac_static.a allows an out-of-bounds write because a certain -1 return value is mishandled. GPAC versión 0.7.1 y anteriores, gf_text_get_utf8_line en media_tools/text_import.c en libgpac_static.a permite una escritura fuera de límites porque un determinado valor de retorno -1 se manjea de forma inadecuada. • https://github.com/gpac/gpac/commit/4c1360818fc8948e9307059fba4dc47ba8ad255d https://github.com/gpac/gpac/issues/1177 https://lists.debian.org/debian-lts-announce/2019/02/msg00040.html https://usn.ubuntu.com/3926-1 • CWE-787: Out-of-bounds Write •