PT-2026-24938 · Debian+2 · Gpac
Breakingbad
·
Publicado
2026-01-01
·
Atualizado
2026-03-13
·
CVE-2026-4016
CVSS v3.1
5.3
Média
| Vetor | AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L |
Name of the Vulnerable Software and Affected Versions
GPAC version 26.03-DEV
Description
A security issue has been identified in GPAC 26.03-DEV. The
svgin process function within the SVG Parser component, located in the file src/filters/load svg.c, is susceptible to an out-of-bounds write condition. Local access is required for exploitation. The exploit for this issue has been publicly disclosed. The patch identifier is 7618d7206cdeb3c28961dc97ab0ecabaff0c8af2.Recommendations
Install the patch with identifier
7618d7206cdeb3c28961dc97ab0ecabaff0c8af2 to address this issue.Exploit
Correção
Buffer Overflow
Memory Corruption
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Gpac