Tsmuxer is a specialized multimedia muxing tool that processes and combines video and audio streams, a focused but strategically important utility in media production and transcoding workflows. Vulnerabilities affecting the project skew toward critical-severity outcomes and recur through a pattern of memory-safety weaknesses—out-of-bounds reads and writes, classic buffer overflows, integer overflows, and divide-by-zero conditions—that are characteristic of native multimedia parsing code handling untrusted input formats. Defenders relying on this tool should treat security updates as high-priority given the severity tendency of its disclosures; live exploitation activity and current CVE counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Tsmuxer Project over time
Signals from CVEs in this vendor scope (13 CVEs).
13 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-35346CRITICAL tsMuxer v2.6.16 was discovered to contain a heap-based buffer overflow via the function HevcSpsUnit::short_term_ref_pic_set(int) in hevc.cpp. | Dec 3, 2021 | 9.8 | 30 | NO | NO |
CVE-2021-35344CRITICAL tsMuxer v2.6.16 was discovered to contain a heap-based buffer overflow via the function BitStreamReader::getCurVal in bitStream.h. | Dec 3, 2021 | 9.8 | 30 | NO | NO |
CVE-2021-45863MEDIUM tsMuxer git-2678966 was discovered to contain a heap-based buffer overflow via the function HevcUnit::updateBits in hevc.cpp. | Mar 2, 2022 | 5.5 | 21 | NO | NO |
CVE-2022-43152MEDIUM tsMuxer v2.6.16 was discovered to contain a heap overflow via the function BitStreamWriter::flushBits() at /tsMuxer/bitStream.h. | Oct 31, 2022 | 5.5 | 20 | NO | NO |
CVE-2021-45864MEDIUM tsMuxer git-c6a0277 was discovered to contain a segmentation fault via DTSStreamReader::findFrame in dtsStreamReader.cpp. | Mar 2, 2022 | 5.5 | 20 | NO | NO |
CVE-2021-45861MEDIUM There is an Assertion `num <= INT_BIT' failed at BitStreamReader::skipBits in /bitStream.h:132 of tsMuxer git-c6a0277. | Mar 2, 2022 | 5.5 | 20 | NO | NO |
CVE-2021-34071MEDIUM Heap based buffer overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with a crafted file. | Jun 23, 2021 | 5.5 | 19 | NO | NO |
CVE-2021-34070MEDIUM Out-of-bounds Read in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with a crafted file. | Jun 23, 2021 | 5.5 | 19 | NO | NO |
CVE-2021-34069MEDIUM Divide-by-zero bug in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with a crafted file. | Jun 23, 2021 | 5.5 | 19 | NO | NO |
CVE-2021-34068MEDIUM Heap based buffer overflow in tsMuxer 2.6.16 allows attackers to cause a Denial of Service (DoS) by running the application with a crafted file. | Jun 23, 2021 | 5.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (13 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Tsmuxer Project.
Media articles that mention a CVE ID that affects a product developed by Tsmuxer Project — matched by CVE ID, not by vendor name.