CVE-2023-48014: Gpac

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

GPAC v2.3-DEV-rev566-g50c2ab06f-master was discovered to contain a stack overflow via the hevc_parse_vps_extension function at /media_tools/av_parsers.c.

Affected products

  • Gpac Gpac: version 2.3-dev-rev566-g50c2ab06f-master only

Published 2023-11-15. Last modified 2026-06-17.