PT-2026-89148 · Undefined · Undefined

CVE-2026-79522

·

Published

2026-09-09

·

Updated

2026-09-09

CVSS v3.1

6.5

Medium

VectorAC:L/AV:N/A:H/C:N/I:N/PR:N/S:U/UI:R
An out-of-bounds read in the gf dm get chunk data function (src/utils/downloader.c) of GPAC v26.07.0 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request. Fixed in 2fd5a06ab226767900fd86edb5a1e8bfc1010640.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2026-79522

Affected Products

Undefined