CVE-2020-24829: Gpac
Medium severity, CVSS 5.5. EPSS: 1% chance of exploitation in the next 30 days.
An issue was discovered in GPAC from v0.5.2 to v0.8.0, as demonstrated by MP4Box. It contains a heap-based buffer overflow in gf_m2ts_section_complete in media_tools/mpegts.c that can cause a denial of service (DOS) via a crafted MP4 file.
Affected products
- Gpac Gpac: from 0.5.2, up to and including 0.8.0
Published 2021-08-04. Last modified 2026-06-17.