CVE-2023-1448: Gpac

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

A vulnerability, which was classified as problematic, was found in GPAC 2.3-DEV-rev35-gbbca86917-master. This affects the function gf_m2ts_process_sdt of the file media_tools/mpegts.c. The manipulation leads to heap-based buffer overflow. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The identifier VDB-223293 was assigned to this vulnerability.

Affected products

  • Gpac Gpac: version 2.3 only

Published 2023-03-17. Last modified 2026-06-17.