PT-2026-3083 · Gpac · Gpac

Published

2025-01-01

·

Updated

2026-01-17

·

CVE-2025-70302

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions GPAC version 2.4.0
Description A heap overflow exists in the ghi dmx declare opid bin() function. This issue can be exploited by attackers to cause a Denial of Service (DoS) by providing a crafted input.
Recommendations Update to a newer version of GPAC that addresses this issue. As a temporary workaround, consider restricting the processing of crafted inputs to mitigate the risk of exploitation.

Exploit

Fix

DoS

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2026-00597
CVE-2025-70302

Affected Products

Gpac