CVE-2022-47657: Gpac

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

GPAC MP4Box 2.1-DEV-rev644-g5c4df2a67 is vulnerable to buffer overflow in function hevc_parse_vps_extension of media_tools/av_parsers.c:7662

Affected products

  • Gpac Gpac: before 2.2.0 (fixed in 2.2.0)

Published 2023-01-05. Last modified 2026-06-17.