Gpac · Gpac · CVE-2020-24829
**Name of the Vulnerable Software and Affected Versions**
GPAC version 0.8.0
**Description**
The issue is related to a heap-based buffer overflow in the `gf m2ts section complete` function in `media tools/mpegts.c`, which can cause a denial of service (DOS) via a crafted MP4 file. This can be exploited by a remote attacker to disrupt service.
**Recommendations**
For GPAC version 0.8.0, consider disabling the `gf m2ts section complete` function in `media tools/mpegts.c` as a temporary workaround to minimize the risk of exploitation until a patch is available.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.