CVE-2024-24266
https://notcve.org/view.php?id=CVE-2024-24266
gpac v2.2.1 was discovered to contain a Use-After-Free (UAF) vulnerability via the dasher_configure_pid function at /src/filters/dasher.c. Se descubrió que gpac v2.2.1 contenía una vulnerabilidad Use-After-Free (UAF) a través de la función dasher_configure_pid en /src/filters/dasher.c. • https://github.com/yinluming13579/gpac_defects/blob/main/gpac_2.md • CWE-416: Use After Free •
CVE-2024-24267
https://notcve.org/view.php?id=CVE-2024-24267
gpac v2.2.1 was discovered to contain a memory leak via the gfio_blob variable in the gf_fileio_from_blob function. Se descubrió que gpac v2.2.1 contenía una pérdida de memoria a través de la variable gfio_blob en la función gf_fileio_from_blob. • https://github.com/gpac/gpac/commit/d28d9ba45cf4f628a7b2c351849a895e6fcf2234 https://github.com/gpac/gpac/issues/2571 https://github.com/yinluming13579/gpac_defects/blob/main/gpac_3.md • CWE-401: Missing Release of Memory after Effective Lifetime •
CVE-2024-24265
https://notcve.org/view.php?id=CVE-2024-24265
gpac v2.2.1 was discovered to contain a memory leak via the dst_props variable in the gf_filter_pid_merge_properties_internal function. Se descubrió que gpac v2.2.1 contenía una pérdida de memoria a través de la variable dst_props en la función gf_filter_pid_merge_properties_internal. • https://github.com/yinluming13579/gpac_defects/blob/main/gpac_1.md • CWE-401: Missing Release of Memory after Effective Lifetime •
CVE-2024-0322 – Out-of-bounds Read in gpac/gpac
https://notcve.org/view.php?id=CVE-2024-0322
Out-of-bounds Read in GitHub repository gpac/gpac prior to 2.3-DEV. Fuera de los límites Read en el repositorio de GitHub gpac/gpac anterior a 2.3-DEV. • https://github.com/gpac/gpac/commit/092904b80edbc4dce315684a59cc3184c45c1b70 https://huntr.com/bounties/87611fc9-ed7c-43e9-8e52-d83cd270bbec • CWE-125: Out-of-bounds Read •
CVE-2024-0321 – Stack-based Buffer Overflow in gpac/gpac
https://notcve.org/view.php?id=CVE-2024-0321
Stack-based Buffer Overflow in GitHub repository gpac/gpac prior to 2.3-DEV. desbordamiento de búfer en la región stack de la memoria en el repositorio de GitHub gpac/gpac anterior a 2.3-DEV. • https://github.com/gpac/gpac/commit/d0ced41651b279bb054eb6390751e2d4eb84819a https://huntr.com/bounties/4c027b94-8e9c-4c31-a169-893b25047769 • CWE-121: Stack-based Buffer Overflow CWE-787: Out-of-bounds Write •