CVE-2026-90610
- EPSS 0.12%
- Veröffentlicht 14.09.2026 00:45:08
- Zuletzt bearbeitet 15.09.2026 14:17:23
A vulnerability was found in GPAC up to f1219cde. This affects the function gf_svg_attributes_copy of the file scenegraph/svg_attributes.c of the component MP4Box. Performing a manipulation results in buffer over-read. The attack is only possible wit...
CVE-2026-90609
- EPSS 0.12%
- Veröffentlicht 14.09.2026 00:30:08
- Zuletzt bearbeitet 14.09.2026 20:56:48
A vulnerability has been found in GPAC up to f1219cde. The impacted element is an unknown function of the file scenegraph/vrml_tools.c of the component MP4Box. Such manipulation leads to null pointer dereference. The attack can only be performed from...
CVE-2026-90578
- EPSS 0.16%
- Veröffentlicht 13.09.2026 18:45:10
- Zuletzt bearbeitet 15.09.2026 19:17:45
A flaw has been found in GPAC up to f1219cde. Affected by this issue is the function gf_list_count of the file utils/list.c of the component MP4Box. Executing a manipulation can lead to use after free. The attack is restricted to local execution. The...
CVE-2026-90577
- EPSS 0.17%
- Veröffentlicht 13.09.2026 18:30:09
- Zuletzt bearbeitet 15.09.2026 15:17:28
A vulnerability was detected in GPAC up to f1219cde. Affected by this vulnerability is the function gf_node_get_field of the file scenegraph/base_scenegraph.c of the component MP4Box. Performing a manipulation results in heap-based buffer overflow. T...
CVE-2026-90576
- EPSS 0.16%
- Veröffentlicht 13.09.2026 18:15:09
- Zuletzt bearbeitet 14.09.2026 20:56:48
A security vulnerability has been detected in GPAC up to f1219cde. Affected is the function gf_node_list_add_child of the file scenegraph/base_scenegraph.c of the component MP4Box. Such manipulation leads to null pointer dereference. The attack can o...
CVE-2026-90573
- EPSS 0.12%
- Veröffentlicht 13.09.2026 17:30:09
- Zuletzt bearbeitet 16.09.2026 20:17:40
A vulnerability was identified in GPAC up to f1219cde. The impacted element is the function gf_sg_mfurl_del of the file scenegraph/vrml_tools.c of the component MP4Box. The manipulation leads to null pointer dereference. Local access is required to a...
CVE-2026-71612
- EPSS 0.18%
- Veröffentlicht 09.09.2026 00:00:00
- Zuletzt bearbeitet 14.09.2026 15:17:06
Buffer Overflow vulnerability in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to execute arbitrary code via the nhntdmx_process() function. Fixed in fac50e6a12ac27ffabdd5d3080b51afcc44ad8d6.
CVE-2026-71613
- EPSS 0.14%
- Veröffentlicht 09.09.2026 00:00:00
- Zuletzt bearbeitet 10.09.2026 16:17:52
Buffer Overflow vulnerability in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to execute arbitrary code via the j2kdec_process() function. Fixed in 9a253a07fd3f6b48022bba74302bf39388dda859.
CVE-2026-71614
- EPSS 0.16%
- Veröffentlicht 09.09.2026 00:00:00
- Zuletzt bearbeitet 14.09.2026 13:18:43
An issue in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to execute arbitrary code via the src/media_tools/dvb_mpe.c, descriptorTime_slice_fec_identifier() and gf_m2ts_ipdatagram_reader() components. Fixed in 0e4093392e1f847c90d20...
CVE-2026-71616
- EPSS 0.15%
- Veröffentlicht 09.09.2026 00:00:00
- Zuletzt bearbeitet 14.09.2026 13:18:44
An issue in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to cause a denial of service via the function gf_route_media_complete_object(). Fixed in 3c4e6c5b3e0c6fa9b16d55599701a08354538fab.