CVE-2024-57184: Gpac

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

An issue was discovered in GPAC v0.8.0, as demonstrated by MP4Box. It contains a heap-based buffer overflow in gf_m2ts_process_pmt in media_tools/mpegts.c:2163 that can cause a denial of service (DOS) via a crafted MP4 file.

Affected products

  • Gpac Gpac: version 0.8.0 only

Published 2025-01-24. Last modified 2026-06-17.