CVE Browser

Search and filter CVEs by severity, ecosystem, EPSS score, and more.

Clear
More filters (active)

Page 1

CVE-2020-16161 HIGH

GoPro gpmf-parser 1.5 has a division-by-zero vulnerability in GPMF_ScaledData(). Parsing malicious input can result in a crash.

CVSS 7.5 EPSS 1.82% Oct 19, 2020
CVE-2020-16160 HIGH

GoPro gpmf-parser 1.5 has a division-by-zero vulnerability in GPMF_Decompress(). Parsing malicious input can result in a crash.

CVSS 7.5 EPSS 1.31% Oct 19, 2020
CVE-2020-16159 CRITICAL

GoPro gpmf-parser 1.5 has a heap out-of-bounds read and segfault in GPMF_ScaledData(). Parsing malicious input can result in a crash or information disclosure.

CVSS 9.1 EPSS 1.57% Oct 19, 2020
CVE-2020-16158 HIGH

GoPro gpmf-parser through 1.5 has a stack out-of-bounds write vulnerability in GPMF_ExpandComplexTYPE(). Parsing malicious input can result in a crash or poten…

CVSS 8.8 EPSS 2.02% Oct 19, 2020
CVE-2019-20086 HIGH

GoPro GPMF-parser 1.2.3 has a heap-based buffer over-read in GPMF_Next in GPMF_parser.c.

CVSS 8.8 EPSS 1.04% Dec 30, 2019
CVE-2019-20087 HIGH

GoPro GPMF-parser 1.2.3 has a heap-based buffer over-read in GPMF_seekToSamples in GPMF-parse.c for the "matching tags" feature.

CVSS 8.8 EPSS 1.04% Dec 30, 2019
CVE-2019-20088 HIGH

GoPro GPMF-parser 1.2.3 has a heap-based buffer over-read in GetPayload in GPMF_mp4reader.c.

CVSS 7.8 EPSS 0.86% Dec 30, 2019
CVE-2019-20089 HIGH

GoPro GPMF-parser 1.2.3 has an heap-based buffer over-read in GPMF_SeekToSamples in GPMF_parse.c for the size calculation.

CVSS 7.8 EPSS 0.78% Dec 30, 2019
CVE-2019-15146 MEDIUM

GoPro GPMF-parser 1.2.2 has a heap-based buffer over-read (4 bytes) in GPMF_Next in GPMF_parser.c.

CVSS 6.5 EPSS 1.14% Aug 18, 2019
CVE-2019-15147 MEDIUM

GoPro GPMF-parser 1.2.2 has an out-of-bounds read and SEGV in GPMF_Next in GPMF_parser.c.

CVSS 6.5 EPSS 1.14% Aug 18, 2019
CVE-2019-15148 MEDIUM

GoPro GPMF-parser 1.2.2 has an out-of-bounds write in OpenMP4Source in demo/GPMF_mp4reader.c.

CVSS 6.5 EPSS 1.14% Aug 18, 2019
CVE-2018-18699 HIGH

An issue was discovered in GoPro gpmf-parser 1.2.1. There is an out-of-bounds write in OpenMP4Source in GPMF_mp4reader.c.

CVSS 8.8 EPSS 1.38% Oct 27, 2018
CVE-2018-18190 MEDIUM

An issue was discovered in GoPro gpmf-parser before 1.2.1. There is a divide-by-zero error in GPMF_ScaledData in GPMF_parser.c.

CVSS 5.5 EPSS 0.88% Oct 9, 2018
CVE-2018-13026 CRITICAL

An issue was discovered in gpmf-parser 1.1.2. There is a heap-based buffer over-read in GPMF_parser.c in the function GPMF_Type.

CVSS 9.8 EPSS 1.55% Jun 30, 2018
CVE-2018-13011 CRITICAL

An issue was discovered in gpmf-parser 1.1.2. There is a heap-based buffer over-read in GPMF_parser.c in the function GPMF_Validate.

CVSS 9.8 EPSS 1.77% Jun 29, 2018
CVE-2018-13009 CRITICAL

An issue was discovered in gpmf-parser 1.1.2. There is a heap-based buffer over-read in GPMF_parser.c in the function GPMF_Next, related to certain checks for…

CVSS 9.8 EPSS 1.77% Jun 29, 2018
CVE-2018-13008 CRITICAL

An issue was discovered in gpmf-parser 1.1.2. There is a heap-based buffer over-read in GPMF_parser.c in the function GPMF_Next, related to certain checks for…

CVSS 9.8 EPSS 1.77% Jun 29, 2018
CVE-2018-13007 CRITICAL

An issue was discovered in gpmf-parser 1.1.2. There is a heap-based buffer over-read in GPMF_parser.c in the function GPMF_Next, related to certain checks for…

CVSS 9.8 EPSS 1.77% Jun 29, 2018
CVE-2014-6434 HIGH

gpExec in GoPro HERO 3+ allows remote attackers to execute arbitrary commands via a the (1) a1 or (2) a2 parameter in a restart action.

CVSS 10.0 EPSS 3.17% Oct 7, 2014
CVE-2014-6433 HIGH

gpExec in GoPro HERO 3+ allows remote attackers to execute arbitrary files via a the (1) a1 or (2) a2 parameter in a start action.

CVSS 10.0 EPSS 3.32% Oct 7, 2014

Showing 1 to 20 CVEs · page 1