NA - CVE-2024-57256 - An integer overflow in ext4fs_read_symlink in...
An integer overflow in ext4fs_read_symlink in Das U-Boot before 2025.01-rc1 occurs for zalloc (adding one to an le32 variable) via a crafted ext4 filesystem with an inode size of 0xffffffff,...
NA - CVE-2024-57258 - Integer overflows in memory allocation in Das...
Integer overflows in memory allocation in Das U-Boot before 2025.01-rc1 occur for a crafted squashfs filesystem via sbrk, via request2size, or because ptrdiff_t is mishandled on x86_64.
NA - CVE-2024-57259 - sqfs_search_dir in Das U-Boot before...
sqfs_search_dir in Das U-Boot before 2025.01-rc1 exhibits an off-by-one error and resultant heap memory corruption for squashfs directory listing because the path separator is not considered in a...
NA - CVE-2025-22919 - A reachable assertion in FFmpeg git-master...
A reachable assertion in FFmpeg git-master commit N-113007-g8d24a28d06 allows attackers to cause a Denial of Service (DoS) via opening a crafted AAC file.
NA - CVE-2025-22920 - A heap buffer overflow vulnerability in FFmpeg...
A heap buffer overflow vulnerability in FFmpeg before commit 4bf784c allows attackers to trigger a memory corruption via supplying a crafted media file in avformat when processing tile grid group...
NA - CVE-2025-24928 - libxml2 before 2.12.10 and 2.13.x before 2.13.6...
libxml2 before 2.12.10 and 2.13.x before 2.13.6 has a stack-based buffer overflow in xmlSnprintfElements in valid.c. To exploit this, DTD validation must occur for an untrusted document or...