Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-90612

Опубликовано: 14 сент. 2026
Источник: nvd
CVSS3: 3.3
CVSS2: 1.7
EPSS Низкий

Описание

A vulnerability was identified in GPAC up to f1219cde. Affected is the function gf_sm_dump_command_list of the file scene_manager/scene_dump.c of the component MP4Box. The manipulation leads to reachable assertion. The attack must be carried out locally. The exploit is publicly available and might be used. Upgrading to version abi-16.23 is able to address this issue. The identifier of the patch is afca1f1181668d85941d51ed1adf647807d5d975. Upgrading the affected component is advised.

EPSS

Процентиль: 2%
0.00118
Низкий

3.3 Low

CVSS3

1.7 Low

CVSS2

Дефекты

CWE-617

Связанные уязвимости

CVSS3: 3.3
ubuntu
3 дня назад

A vulnerability was identified in GPAC up to f1219cde. Affected is the function gf_sm_dump_command_list of the file scene_manager/scene_dump.c of the component MP4Box. The manipulation leads to reachable assertion. The attack must be carried out locally. The exploit is publicly available and might be used. Upgrading to version abi-16.23 is able to address this issue. The identifier of the patch is afca1f1181668d85941d51ed1adf647807d5d975. Upgrading the affected component is advised.

CVSS3: 3.3
debian
3 дня назад

A vulnerability was identified in GPAC up to f1219cde. Affected is the ...

CVSS3: 3.3
github
3 дня назад

A vulnerability was identified in GPAC up to f1219cde. Affected is the function gf_sm_dump_command_list of the file scene_manager/scene_dump.c of the component MP4Box. The manipulation leads to reachable assertion. The attack must be carried out locally. The exploit is publicly available and might be used. Upgrading to version abi-16.23 is able to address this issue. The identifier of the patch is afca1f1181668d85941d51ed1adf647807d5d975. Upgrading the affected component is advised.

EPSS

Процентиль: 2%
0.00118
Низкий

3.3 Low

CVSS3

1.7 Low

CVSS2

Дефекты

CWE-617