PT-2026-52133 · Gpac+1 · Mp4Box+1
CVE-2025-60474
·
Published
2026-06-24
·
Updated
2026-07-07
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
GPAC Project/MP4Box versions prior to 26.02.0
Description
A buffer overflow occurs in the
gf media import() function located in /media tools/av parsers.c. This issue allows remote attackers to cause a Denial of Service (DoS) by providing a specially crafted input. A buffer overflow is a condition where a program writes more data to a block of memory than it can hold, potentially overwriting adjacent memory.Recommendations
Update to version 26.02.0 or later.
Exploit
Fix
DoS
NULL Pointer Dereference
Stack Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Mp4Box
Red Os