dimCRead in isomedia/boxcode_3gpp.c in GPAC from 0.5.2 to 0.8.0 has a stack-based buffer overflow.
{ "vanir_signatures": [ { "id": "CVE-2019-20208-264a3cf2", "signature_type": "Function", "digest": { "function_hash": "267101714015547623690913367371328526954", "length": 792.0 }, "target": { "file": "src/isomedia/box_code_3gpp.c", "function": "dimC_Read" }, "deprecated": false, "signature_version": "v1", "source": "https://github.com/gpac/gpac/commit/bcfcb3e90476692fe0d2bb532ea8deeb2a77580e" }, { "id": "CVE-2019-20208-a64957e9", "signature_type": "Function", "digest": { "function_hash": "340232248751195583711702154182087948597", "length": 1440.0 }, "target": { "file": "src/media_tools/av_parsers.c", "function": "av1_parse_tile_group" }, "deprecated": false, "signature_version": "v1", "source": "https://github.com/gpac/gpac/commit/bcfcb3e90476692fe0d2bb532ea8deeb2a77580e" }, { "id": "CVE-2019-20208-bbd13e77", "signature_type": "Line", "digest": { "line_hashes": [ "11049701244475237779126564003888030610", "154188121443507541596554777864152861998", "143853430433160951676677172260664553603" ], "threshold": 0.9 }, "target": { "file": "src/media_tools/av_parsers.c" }, "deprecated": false, "signature_version": "v1", "source": "https://github.com/gpac/gpac/commit/bcfcb3e90476692fe0d2bb532ea8deeb2a77580e" }, { "id": "CVE-2019-20208-cb0cae85", "signature_type": "Line", "digest": { "line_hashes": [ "290916121066657946246643916078004638124", "139629543009130235920786115429859115469", "219428159513859071163693712510745714203", "261277137494029647098211910788802170554" ], "threshold": 0.9 }, "target": { "file": "src/isomedia/box_code_3gpp.c" }, "deprecated": false, "signature_version": "v1", "source": "https://github.com/gpac/gpac/commit/bcfcb3e90476692fe0d2bb532ea8deeb2a77580e" } ] }