Latest CVE Feed

Vulnerabilities published in the last 30 days. Filter by severity, exploit status, or attack vector.

Score
Vulnerability
Published
5.5 MEDIUM
CVE-2025-55663 — GPAC MP4Box Segmentation Violation Denial of Service

A segmentation violation in the Track_SetStreamDescriptor function (isomedia/track.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.

| Memory Corruption
Jun 15, 2026 Jun 16, 2026
Jun 15, 2026
Jun 16, 2026
5.5 MEDIUM
CVE-2025-55661 — GPAC MP4Box Heap Buffer Overflow

A heap buffer overflow in the Opus audio stream parser component of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.

| Memory Corruption
Jun 15, 2026 Jun 16, 2026
Jun 15, 2026
Jun 16, 2026
5.5 MEDIUM
CVE-2025-55660 — GPAC MP4Box Stack Overflow Denial of Service

A stack overflow in the gf_opus_read_length function (media_tools/av_parsers.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.

| Memory Corruption
Jun 15, 2026 Jun 16, 2026
Jun 15, 2026
Jun 16, 2026
5.5 MEDIUM
CVE-2025-55652 — GPAC MP4Box Heap Buffer Overflow

A heap buffer overflow in the gf_isom_vp_config_new function (isomedia/avc_ext.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.

| Memory Corruption
Jun 15, 2026 Jun 16, 2026
Jun 15, 2026
Jun 16, 2026
5.5 MEDIUM
CVE-2025-55650 — GPAC MP4Box Heap Use-After-Free

A heap use-after-free in the gf_node_get_tag function (scenegraph/base_scenegraph.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.

gpac | Memory Corruption
Jun 15, 2026 Jun 16, 2026
Jun 15, 2026
Jun 16, 2026
5.5 MEDIUM
CVE-2025-55649 — GPAC MP4Box: NULL Pointer Dereference Denial of Service

A NULL pointer dereference in the gf_media_map_esd function (media_tools/isom_tools.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.

gpac | Memory Corruption
Jun 15, 2026 Jun 16, 2026
Jun 15, 2026
Jun 16, 2026
5.5 MEDIUM
CVE-2025-55648 — GPAC MP4Box Heap Buffer Overflow Denial of Service

A heap buffer overflow in the gf_opus_parse_packet_header function (media_tools/av_parsers.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.

gpac | Memory Corruption
Jun 15, 2026 Jun 16, 2026
Jun 15, 2026
Jun 16, 2026
5.5 MEDIUM
CVE-2025-55647 — GPAC MP4Box Out-of-Memory Denial of Service

An Out-of-Memory in the mp4_mux_cenc_insert_pssh function (filters/mux_isom.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.

gpac | Denial of Service
Jun 15, 2026 Jun 16, 2026
Jun 15, 2026
Jun 16, 2026
5.5 MEDIUM
CVE-2025-55645 — GPAC MP4Box Heap Buffer Overflow

A heap buffer overflow in the gf_cenc_set_pssh function (isomedia/drm_sample.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.

gpac | Memory Corruption
Jun 15, 2026 Jun 16, 2026
Jun 15, 2026
Jun 16, 2026
5.5 MEDIUM
CVE-2025-55644 — GPAC MP4Box Heap Use-After-Free

A heap use-after-free in the gf_node_get_tag function (scenegraph/base_scenegraph.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.

gpac | Memory Corruption
Jun 15, 2026 Jun 16, 2026
Jun 15, 2026
Jun 16, 2026
5.5 MEDIUM
CVE-2025-55643 — GPAC MP4Box: NULL Pointer Dereference Denial of Service

A NULL pointer dereference in the TrackWriter handling component (filters/mux_isom.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.

gpac | Denial of Service
Jun 15, 2026 Jun 16, 2026
Jun 15, 2026
Jun 16, 2026
6.5 MEDIUM
CVE-2025-55642 — GPAC MP4Box Floating Point Exception

GPAC MP4Box v2.4 was discovered to contain a floating point exception in the avidmx_process function (isomedia/isom_write.c).

gpac | Remote | Memory Corruption
Jun 15, 2026 Jun 16, 2026
Jun 15, 2026
Jun 16, 2026
5.5 MEDIUM
CVE-2025-55641 — GPAC MP4Box NULL Pointer Dereference Denial of Service

A NULL pointer dereference in the gf_isom_copy_sample_info function (isomedia/isom_write.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.

gpac | Memory Corruption
Jun 15, 2026 Jun 16, 2026
Jun 15, 2026
Jun 16, 2026
5.4 MEDIUM
CVE-2026-8358 — Heap buffer overflow in spreadsheet tracked-changes import

LibreOffice Calc can import tracked changes from a spreadsheet document. A heap buffer overflow existed when a document reused the same change identifier for two different kinds of change. The import…

libreoffice | Memory Corruption
Jun 15, 2026 Jun 15, 2026
Jun 15, 2026
Jun 15, 2026
5.4 MEDIUM
CVE-2026-8357 — Heap buffer overflow in Calc formula compilation

LibreOffice Calc compiles cell formulas when opening a spreadsheet. A heap buffer overflow existed when compiling a very long formula made up of many opening tokens. The array that tracks nesting dep…

libreoffice | Memory Corruption
Jun 15, 2026 Jun 15, 2026
Jun 15, 2026
Jun 15, 2026
5.4 MEDIUM
CVE-2026-8356 — Stack buffer overflow in PPT presentation import

LibreOffice can import presentations in the legacy binary PPT format. A stack buffer overflow existed when importing a colour-replacement record. Two fixed-size colour tables were filled from the fil…

libreoffice | Memory Corruption
Jun 15, 2026 Jun 15, 2026
Jun 15, 2026
Jun 15, 2026
5.4 MEDIUM
CVE-2026-6047 — Heap buffer overflow in OOXML text box element import

LibreOffice can import documents in the OOXML format (DOCX). A heap buffer overflow existed when replaying deferred parser events for a text box element. A handler object was assumed to be of one typ…

libreoffice | Memory Corruption
Jun 15, 2026 Jun 15, 2026
Jun 15, 2026
Jun 15, 2026
5.4 MEDIUM
CVE-2026-6045 — Heap buffer overflow in EMF+ gradient brush import

LibreOffice can import EMF+ graphics, which may be embedded in documents. A heap buffer overflow existed when importing an EMF+ gradient brush. The number of gradient blend points was read from the f…

libreoffice | Memory Corruption
Jun 15, 2026 Jun 15, 2026
Jun 15, 2026
Jun 15, 2026
5.4 MEDIUM
CVE-2026-6040 — Heap use-after-free in ODF number-format blank-width parsing

A heap use-after-free existed when importing the blank-width characters of an ODF number format. A position value read from the document was not checked against the length of the format-code string, …

libreoffice | Memory Corruption
Jun 15, 2026 Jun 15, 2026
Jun 15, 2026
Jun 15, 2026
5.4 MEDIUM
CVE-2026-6039 — Heap buffer overflow in DXF polyline import

LibreOffice can import drawings in the DXF format used by CAD software. A heap buffer overflow existed when importing a DXF polyline. The point count taken from the file was truncated to a 16-bit val…

libreoffice | Memory Corruption
Jun 15, 2026 Jun 15, 2026
Jun 15, 2026
Jun 15, 2026
Showing 20 of 7617 Results