Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Casperslei

#17511of 53,624
15.3Total CVSS
Vulnerabilities · 2
High
2
PT-2021-11273
7.5
2020-08-20
Mediainfo · Mediainfo · CVE-2020-26797
Name of the Vulnerable Software and Affected Versions: MediaInfo versions prior to 20.08 Description: The issue is a heap buffer overflow vulnerability. It occurs via MediaInfoLib::File Gxf::ChooseParser ChannelGrouping. Recommendations: For versions prior to 20.08, update to version 20.08 or later to resolve the issue.
PT-2020-14407
7.8
2020-06-30
Mediaarea · Mediainfo · CVE-2020-15395
**Name of the Vulnerable Software and Affected Versions** MediaInfo versions 20.03 **Description** The issue is a stack-based buffer over-read in the `Streams Fill PerStream` function in `Multiple/File MpegPs.cpp`, which occurs during MpegPs parsing and can be described as an off-by-one error. **Recommendations** For MediaInfo version 20.03, consider updating to a newer version to resolve the issue, as the current version contains a stack-based buffer over-read that could be exploited. At the moment, there is no information about a newer version that contains a fix for this vulnerability.