CVE-2024-24267: Gpac

High severity, CVSS 7.5. EPSS: 1.6% chance of exploitation in the next 30 days.

gpac v2.2.1 (fixed in v2.4.0) was discovered to contain a memory leak via the gfio_blob variable in the gf_fileio_from_blob function.

Affected products

  • Gpac Gpac: from 2.2.1, before 2.4.0 (fixed in 2.4.0)

Published 2024-02-05. Last modified 2026-06-17.