CVE-2020-22677: Gpac

Medium severity, CVSS 5.5. EPSS: 0.8% chance of exploitation in the next 30 days.

An issue was discovered in gpac 0.8.0. The dump_data_hex function in box_dump.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted input.

Affected products

  • Gpac Gpac: version 0.8.0 only

Published 2021-10-12. Last modified 2026-06-17.