GPAC mp4box 1.1.0-DEV-rev1727-g8be34973d-master has a stack-overflow vulnerability in function gfisomgetsampleformovietime of mp4box.
[
{
"id": "CVE-2022-27145-00ec9c94",
"target": {
"function": "gf_cfg_init",
"file": "src/utils/os_config_init.c"
},
"digest": {
"length": 2924.0,
"function_hash": "331609225902553284938660782849123559724"
},
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/gpac/gpac/commit/418db4149af78773815b5f6a7030a120037ba140",
"signature_type": "Function"
},
{
"id": "CVE-2022-27145-84a001c2",
"target": {
"file": "src/utils/os_config_init.c"
},
"digest": {
"line_hashes": [
"253854454906731252594870579307233588965",
"179864446493625039430457959093405636565",
"157047988769606476955262936216865999399",
"25205688373900634743508465492002274847"
],
"threshold": 0.9
},
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/gpac/gpac/commit/418db4149af78773815b5f6a7030a120037ba140",
"signature_type": "Line"
},
{
"id": "CVE-2022-27145-abddd526",
"target": {
"function": "PrintUsage",
"file": "applications/mp4client/main.c"
},
"digest": {
"length": 1136.0,
"function_hash": "116287927203832314234354772323596679187"
},
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/gpac/gpac/commit/418db4149af78773815b5f6a7030a120037ba140",
"signature_type": "Function"
},
{
"id": "CVE-2022-27145-dde39a3b",
"target": {
"file": "applications/mp4client/main.c"
},
"digest": {
"line_hashes": [
"110287411499135302499254568127786275886",
"196881605958314966606044579045527764763",
"211928352066196418331258856473204866912",
"280195963159516847825224043850516008460"
],
"threshold": 0.9
},
"signature_version": "v1",
"deprecated": false,
"source": "https://github.com/gpac/gpac/commit/418db4149af78773815b5f6a7030a120037ba140",
"signature_type": "Line"
}
]