cbcvebase.

Platform Frameworks Av vulnerabilities

82 known vulnerabilities affecting platform/frameworks_av.

Total CVEs
82
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
UNKNOWN82

Vulnerabilities

Page 3 of 5
CVE-2021-0964P4UNKNOWN≥ 10:0, < 10:2021-12-01≥ 11:0, < 11:2021-12-01+1 more2021-12-01
CVE-2021-0964 CVE-2021-0964: In C2SoftMP3::process() of C2SoftMp3Dec In C2SoftMP3::process() of C2SoftMp3Dec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2021-0971P4UNKNOWN≥ 9:0, < 9:2021-12-05≥ 10:0, < 10:2021-12-05+2 more2021-12-01
CVE-2021-0971 CVE-2021-0971: In MPEG4Source::read of MPEG4Extractor In MPEG4Source::read of MPEG4Extractor.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2024-34731P4UNKNOWN≥ 14-next:0, < 14-next:2024-08-01≥ 12:0, < 12:2024-08-01+3 more2024-08-01
CVE-2024-34731 CVE-2024-34731: In multiple functions of TranscodingResourcePolicy In multiple functions of TranscodingResourcePolicy.cpp, there is a possible memory corruption due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2020-0411P4UNKNOWN≥ 10:0, < 10:2020-10-012020-10-01
CVE-2020-0411 CVE-2020-0411: In ~AACExtractor() of AACExtractor In ~AACExtractor() of AACExtractor.cpp, there is a possible out of bounds write due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2021-0558P4UNKNOWN≥ 11:0, < 11:2021-06-012021-06-01
CVE-2021-0558 CVE-2021-0558: In fillMainDataBuf of pvmp3_framedecoder In fillMainDataBuf of pvmp3_framedecoder.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2021-39665P4UNKNOWN≥ 12:0, < 12:2022-02-012022-02-01
CVE-2021-39665 CVE-2021-39665: In checkSpsUpdated of AAVCAssembler In checkSpsUpdated of AAVCAssembler.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2022-20228P4UNKNOWN≥ 12:0, < 12:2022-07-01≥ 12L:0, < 12L:2022-07-012022-07-01
CVE-2022-20228 CVE-2022-20228: In various functions of C2DmaBufAllocator In various functions of C2DmaBufAllocator.cpp, there is a possible memory corruption due to a use after free. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2021-0508P4UNKNOWN≥ 8.1:0, < 8.1:2021-06-01≥ 9:0, < 9:2021-06-01+2 more2021-06-01
CVE-2021-0508 CVE-2021-0508: In various functions of DrmPlugin In various functions of DrmPlugin.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2021-0520P4UNKNOWN≥ 10:0, < 10:2021-06-01≥ 11:0, < 11:2021-06-012021-06-01
CVE-2021-0520 CVE-2021-0520: In several functions of MemoryFileSystem In several functions of MemoryFileSystem.cpp and related files, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2021-0509P4UNKNOWN≥ 9:0, < 9:2021-06-01≥ 10:0, < 10:2021-06-01+1 more2021-06-01
CVE-2021-0509 CVE-2021-0509: In various functions of CryptoPlugin In various functions of CryptoPlugin.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2020-0414P4UNKNOWN≥ 10:0, < 10:2020-10-012020-10-01
CVE-2020-0414 CVE-2020-0414: In AudioFlinger::RecordThread::threadLoop of audioflinger/Threads In AudioFlinger::RecordThread::threadLoop of audioflinger/Threads.cpp, there is a possible non-silenced audio buffer due to a permissions bypass. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2021-0335P4UNKNOWN≥ 10:0, < 10:2021-02-01≥ 11:0, < 11:2021-02-012021-02-01
CVE-2021-0335 CVE-2021-0335: In process of C2SoftHevcDec In process of C2SoftHevcDec.cpp, there is a possible out of bounds write due to a use after free. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2021-0559P4UNKNOWN≥ 11:0, < 11:2021-06-012021-06-01
CVE-2021-0559 CVE-2021-0559: In Lag_max of p_ol_wgh In Lag_max of p_ol_wgh.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2021-39803P4UNKNOWN≥ 10:0, < 10:2022-04-01≥ 11:0, < 11:2022-04-01+2 more2022-04-01
CVE-2021-39803 CVE-2021-39803: In ~Impl of C2AllocatorIon In ~Impl of C2AllocatorIon.cpp, there is a possible out of bounds read due to a use after free. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2022-20346P4UNKNOWN≥ 10:0, < 10:2022-08-01≥ 11:0, < 11:2022-08-01+2 more2022-08-01
CVE-2022-20346 CVE-2022-20346: In updateAudioTrackInfoFromESDS_MPEG4Audio of MPEG4Extractor In updateAudioTrackInfoFromESDS_MPEG4Audio of MPEG4Extractor.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2021-0482P4UNKNOWN≥ 11:0, < 11:2021-05-012021-05-01
CVE-2021-0482 CVE-2021-0482: In BinderDiedCallback of MediaCodec In BinderDiedCallback of MediaCodec.cpp, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2021-0565P4UNKNOWN≥ 11:0, < 11:2021-06-012021-06-01
CVE-2021-0565 CVE-2021-0565: In wrapUserThread of AudioStream In wrapUserThread of AudioStream.cpp, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2021-39804P4UNKNOWN≥ 11:0, < 11:2022-04-01≥ 12:0, < 12:2022-04-01+1 more2022-04-01
CVE-2021-39804 CVE-2021-39804: In reinit of HeifDecoderImpl In reinit of HeifDecoderImpl.cpp, there is a possible crash due to a missing null check. This could lead to remote persistent denial of service in the file picker with no additional execution privileges needed. User interaction is needed for exploitation.
osv
CVE-2021-0585P4UNKNOWN≥ 10:0, < 10:2021-07-012021-07-01
CVE-2021-0585 CVE-2021-0585: In beginWrite and beginRead of MessageQueueBase In beginWrite and beginRead of MessageQueueBase.h, there is a possible out of bounds write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2022-20551P4UNKNOWN≥ 12:0, < 12:2023-02-01≥ 12L:0, < 12L:2023-02-01+1 more2023-02-01
CVE-2022-20551 CVE-2022-20551: In createTrack of AudioFlinger In createTrack of AudioFlinger.cpp, there is a possible way to record audio without a privacy indicator due to a logic error in the code. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
osv
Platform Frameworks Av vulnerabilities | cvebase