CVE-2023-48011: Gpac

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a heap-use-after-free via the flush_ref_samples function at /gpac/src/isomedia/movie_fragments.c.

Affected products

  • Gpac Gpac: version 2.3-dev-rev566-g50c2ab06f-master only

Published 2023-11-15. Last modified 2026-06-17.