pkgsrc-Changes archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

CVS commit: pkgsrc/doc



Module Name:    pkgsrc
Committed By:   leot
Date:           Sun Jun 22 16:52:34 UTC 2025

Modified Files:
        pkgsrc/doc: pkg-vulnerabilities

Log Message:
pkg-vulnerabilities: add gpac vulnerabilities

Add old gpac vulnerabilities.

CVE-2024-24265, CVE-2024-24266 and CVE-2024-24267 are probably not fixed and
unclear if reported upstream or not.

CVE-2024-6061, CVE-2024-6062, CVE-2024-6064, CVE-2024-6063, CVE-2024-50664,
CVE-2024-50665 and CVE-2025-25723 are fixed upstream but no stable release
contains fixes.


To generate a diff of this commit:
cvs rdiff -u -r1.443 -r1.444 pkgsrc/doc/pkg-vulnerabilities

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.

Modified files:

Index: pkgsrc/doc/pkg-vulnerabilities
diff -u pkgsrc/doc/pkg-vulnerabilities:1.443 pkgsrc/doc/pkg-vulnerabilities:1.444
--- pkgsrc/doc/pkg-vulnerabilities:1.443        Sun Jun 22 14:58:30 2025
+++ pkgsrc/doc/pkg-vulnerabilities      Sun Jun 22 16:52:33 2025
@@ -1,4 +1,4 @@
-# $NetBSD: pkg-vulnerabilities,v 1.443 2025/06/22 14:58:30 leot Exp $
+# $NetBSD: pkg-vulnerabilities,v 1.444 2025/06/22 16:52:33 leot Exp $
 #
 #FORMAT 1.0.0
 #
@@ -26881,3 +26881,73 @@ php{56,72,73,74,80}-composer<1.0.0     cache
 bitcoin<0.12                           buffer-overflow         https://nvd.nist.gov/vuln/detail/CVE-2015-20111
 miniupnpc<2.0                          buffer-overflow         https://nvd.nist.gov/vuln/detail/CVE-2015-20111
 miniupnpd<2.0                          buffer-overflow         https://nvd.nist.gov/vuln/detail/CVE-2015-20111
+gpac<2.2.1     buffer-overflow         https://nvd.nist.gov/vuln/detail/CVE-2023-1452
+gpac<2.2.1     double-free             https://nvd.nist.gov/vuln/detail/CVE-2023-1449
+gpac<2.2.1     buffer-overflow         https://nvd.nist.gov/vuln/detail/CVE-2023-1448
+gpac<2.2.1     buffer-overflow         https://nvd.nist.gov/vuln/detail/CVE-2023-1655
+gpac<2.2.1     denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-1654
+gpac<2.4       null-dereference        https://nvd.nist.gov/vuln/detail/CVE-2023-2840
+gpac<2.4       out-of-bounds-read      https://nvd.nist.gov/vuln/detail/CVE-2023-2838
+gpac<2.4       buffer-overflow         https://nvd.nist.gov/vuln/detail/CVE-2023-2837
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-2839
+gpac<2.4       null-dereference        https://nvd.nist.gov/vuln/detail/CVE-2023-3012
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-3013
+gpac<2.4       heap-overflow           https://nvd.nist.gov/vuln/detail/CVE-2023-3291
+gpac<2.2.2     out-of-bounds-read      https://nvd.nist.gov/vuln/detail/CVE-2023-3523
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-37767
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-37766
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-37765
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-37174
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-39562
+gpac<2.4       null-dereference        https://nvd.nist.gov/vuln/detail/CVE-2023-4683
+gpac<2.4       heap-overflow           https://nvd.nist.gov/vuln/detail/CVE-2023-4682
+gpac<2.4       null-dereference        https://nvd.nist.gov/vuln/detail/CVE-2023-4681
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-4678
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-4720
+gpac<2.4       out-of-bounds-read      https://nvd.nist.gov/vuln/detail/CVE-2023-4721
+gpac<2.4       integer-overflow        https://nvd.nist.gov/vuln/detail/CVE-2023-4722
+gpac<2.4       out-of-bounds-read      https://nvd.nist.gov/vuln/detail/CVE-2023-4758
+gpac<2.4       buffer-overflow         https://nvd.nist.gov/vuln/detail/CVE-2023-4756
+gpac<2.4       out-of-bounds-write     https://nvd.nist.gov/vuln/detail/CVE-2023-4754
+gpac<2.4       use-after-free          https://nvd.nist.gov/vuln/detail/CVE-2023-4755
+gpac<2.4       out-of-bounds-read      https://nvd.nist.gov/vuln/detail/CVE-2023-4778
+gpac<2.4       use-after-free          https://nvd.nist.gov/vuln/detail/CVE-2023-41000
+gpac<2.4       out-of-bounds-read      https://nvd.nist.gov/vuln/detail/CVE-2023-5520
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-42298
+gpac<2.4       null-dereference        https://nvd.nist.gov/vuln/detail/CVE-2023-5586
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-5595
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-46930
+gpac<2.4       heap-overflow           https://nvd.nist.gov/vuln/detail/CVE-2023-46931
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-46928
+gpac<2.4       heap-overflow           https://nvd.nist.gov/vuln/detail/CVE-2023-46927
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-47384
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-48013
+gpac<2.4       stack-overflow          https://nvd.nist.gov/vuln/detail/CVE-2023-48014
+gpac<2.4       use-after-free          https://nvd.nist.gov/vuln/detail/CVE-2023-48011
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-48090
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-48039
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-46871
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-47465
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-46932
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-46929
+gpac<2.4       stack-overflow          https://nvd.nist.gov/vuln/detail/CVE-2024-0321
+gpac<2.4       out-of-bounds-read      https://nvd.nist.gov/vuln/detail/CVE-2024-0322
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-50120
+gpac<2.4       buffer-overflow         https://nvd.nist.gov/vuln/detail/CVE-2024-22749
+gpac-[0-9]*    denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2024-24265
+gpac-[0-9]*    use-after-free          https://nvd.nist.gov/vuln/detail/CVE-2024-24266
+gpac-[0-9]*    denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2024-24267
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-46426
+gpac<2.4       denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2023-46427
+gpac<2.4       out-of-bounds-write     https://nvd.nist.gov/vuln/detail/CVE-2024-28318
+gpac<2.4       out-of-bounds-read      https://nvd.nist.gov/vuln/detail/CVE-2024-28319
+gpac-[0-9]*    denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2024-6061
+gpac-[0-9]*    null-dereference        https://nvd.nist.gov/vuln/detail/CVE-2024-6062
+gpac-[0-9]*    use-after-free          https://nvd.nist.gov/vuln/detail/CVE-2024-6064
+gpac-[0-9]*    null-dereference        https://nvd.nist.gov/vuln/detail/CVE-2024-6063
+gpac<2.4       use-after-free          https://nvd.nist.gov/vuln/detail/CVE-2023-4679
+gpac-[0-9]*    heap-overflow           https://nvd.nist.gov/vuln/detail/CVE-2024-50664
+gpac-[0-9]*    denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2024-50665
+gpac<2.2.0     buffer-overflow         https://nvd.nist.gov/vuln/detail/CVE-2022.490
+gpac<0.8.1     denial-of-service       https://nvd.nist.gov/vuln/detail/CVE-2024-57184
+gpac-[0-9]*    buffer-overflow         https://nvd.nist.gov/vuln/detail/CVE-2025-25723



Home | Main Index | Thread Index | Old Index