Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-90610

Опубликовано: 14 сент. 2026
Источник: nvd
CVSS3: 3.3
CVSS2: 1.7
EPSS Низкий

Описание

A vulnerability was found in GPAC up to f1219cde. This affects the function gf_svg_attributes_copy of the file scenegraph/svg_attributes.c of the component MP4Box. Performing a manipulation results in buffer over-read. The attack is only possible with local access. The exploit has been made public and could be used. Upgrading to version abi-16.23 mitigates this issue. The patch is named afca1f1181668d85941d51ed1adf647807d5d975. Upgrading the affected component is recommended.

EPSS

Процентиль: 2%
0.00118
Низкий

3.3 Low

CVSS3

1.7 Low

CVSS2

Дефекты

CWE-119

Связанные уязвимости

CVSS3: 3.3
ubuntu
3 дня назад

A vulnerability was found in GPAC up to f1219cde. This affects the function gf_svg_attributes_copy of the file scenegraph/svg_attributes.c of the component MP4Box. Performing a manipulation results in buffer over-read. The attack is only possible with local access. The exploit has been made public and could be used. Upgrading to version abi-16.23 mitigates this issue. The patch is named afca1f1181668d85941d51ed1adf647807d5d975. Upgrading the affected component is recommended.

CVSS3: 3.3
debian
3 дня назад

A vulnerability was found in GPAC up to f1219cde. This affects the fun ...

CVSS3: 3.3
github
3 дня назад

A vulnerability was found in GPAC up to f1219cde. This affects the function gf_svg_attributes_copy of the file scenegraph/svg_attributes.c of the component MP4Box. Performing a manipulation results in buffer over-read. The attack is only possible with local access. The exploit has been made public and could be used. Upgrading to version abi-16.23 mitigates this issue. The patch is named afca1f1181668d85941d51ed1adf647807d5d975. Upgrading the affected component is recommended.

EPSS

Процентиль: 2%
0.00118
Низкий

3.3 Low

CVSS3

1.7 Low

CVSS2

Дефекты

CWE-119