CVE-2020-23266: Gpac

Medium severity, CVSS 5.5. EPSS: 0.6% chance of exploitation in the next 30 days.

An issue was discovered in gpac 0.8.0. The OD_ReadUTF8String function in odf_code.c has a heap-based buffer overflow which can lead to a denial of service (DOS) via a crafted media file.

Affected products

  • Gpac Gpac: version 0.8.0 only

Published 2021-09-22. Last modified 2026-06-17.