Skip to main content

Vendor archive

mp4v2_project CVEs

Beta · best-effort

10 CVEs tagged to vendor mp4v2_project0 Critical, 4 High, 4 Medium, 2 Low, 0 Unrated.

CVE-2023-33717

Published Jun 2, 2023

mp4v2 v2.1.3 was discovered to contain a memory leak when a method calling MP4File::ReadBytes() had allocated memory but did not catch exceptions thrown by ReadBytes()

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2023-33718

Published May 31, 2023

mp4v2 v2.1.3 was discovered to contain a memory leak via MP4File::ReadString() at mp4file_io.cpp

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-29578

Published Apr 24, 2023

mp4v2 v2.0.0 was discovered to contain a heap buffer overflow via the mp4v2::impl::MP4StringProperty::~MP4StringProperty() function at src/mp4property.cpp.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-29584

Published Apr 14, 2023

mp4v2 v2.0.0 was discovered to contain a heap buffer overflow via the MP4GetVideoProfileLevel function at /src/mp4.cpp.

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort

CVE-2023-1451

Published Mar 17, 2023

A vulnerability was found in MP4v2 2.1.2. It has been classified as problematic. Affected is the function mp4v2::impl::MP4Track::GetSampleFileOffset of the file mp4track.cpp. The…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2023-1450

Published Mar 17, 2023

A vulnerability was found in MP4v2 2.1.2 and classified as problematic. This issue affects the function DumpTrack of the file mp4trackdump.cpp. The manipulation leads to denial of…

CVSS 3.3 · Low
Vendor/product tagsBeta · best-effort

CVE-2018-17236

Published Sep 20, 2018

The function MP4Free() in mp4property.cpp in libmp4v2 2.1.0 internally calls free() on a invalid pointer, raising a SIGABRT signal.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-17235

Published Sep 20, 2018

The function mp4v2::impl::MP4Track::FinishSdtp() in mp4track.cpp in libmp4v2 2.1.0 mishandles compatibleBrand while processing a crafted mp4 file, which leads to a heap-based buff…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2018-7339

Published Feb 23, 2018

The MP4Atom class in mp4atom.cpp in MP4v2 through 2.0.0 mishandles Entry Number validation for the MP4 Table Property, which allows remote attackers to cause a denial of service (…

CVSS 8.8 · High
Vendor/product tagsBeta · best-effort
Showing 1-10 of 10 CVEsPage 1 of 1