CVE Tools

FAAD2-PROJECT

6 CVEs tracked since 2021. Since Sep 2021, none of them reached CISA KEV.

FAAD2-PROJECT CVEs per month

Sep 2021 to Sep 2021. Point at a month, or focus the strip and use the arrow keys.
FAAD2-PROJECT CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2021-0960

Products

The products that kept showing up in FAAD2-PROJECT's monthly top three, with their CVEs summed over those months.

  1. FAAD261 month

Latest CVEs

The 9 most recently published vulnerabilities affecting FAAD2-PROJECT.

  1. CVE-2023-38858Buffer Overflow vulnerability infaad2 v.2.10.1 allows a remote attacker to execute arbitrary code and cause a denial of service via the mp4info function in mp4read.c:1039.6.5
  2. CVE-2023-38857Buffer Overflow vulnerability infaad2 v.2.10.1 allows a remote attacker to execute arbitrary code and cause a denial of service via the stcoin function in mp4read.c.5.5
  3. CVE-2021-32276An issue was discovered in faad2 through 2.10.0. A NULL pointer dereference exists in the function get_sample() located in output.c. It allows an attacker to cause Denial of Service.5.5
  4. CVE-2021-32277An issue was discovered in faad2 through 2.10.0. A heap-buffer-overflow exists in the function sbr_qmf_analysis_32 located in sbr_qmf.c. It allows an attacker to cause code Execution.7.8
  5. CVE-2021-32274An issue was discovered in faad2 through 2.10.0. A heap-buffer-overflow exists in the function sbr_qmf_synthesis_64 located in sbr_qmf.c. It allows an attacker to cause code Execution.7.8
  6. CVE-2021-32272An issue was discovered in faad2 before 2.10.0. A heap-buffer-overflow exists in the function stszin located in mp4read.c. It allows an attacker to cause Code Execution.7.8
  7. CVE-2021-32273An issue was discovered in faad2 through 2.10.0. A stack-buffer-overflow exists in the function ftypin located in mp4read.c. It allows an attacker to cause Code Execution.7.8
  8. CVE-2021-32278An issue was discovered in faad2 through 2.10.0. A heap-buffer-overflow exists in the function lt_prediction located in lt_predict.c. It allows an attacker to cause code Execution.7.8
  9. CVE-2021-26567Stack-based buffer overflow vulnerability in frontend/main.c in faad2 before 2.2.7.1 allow local attackers to execute arbitrary code via filename and pathname options.7.8

The record

Peak rank
#81 in Sep 2021
Busiest month shown
Sep 2021, 6 CVEs
Months with a KEV entry
0 since Sep 2021
Monthly snapshots
1 since 2021
FAAD2-PROJECT's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store