CNNVD-202601-2599 Information

CNNVD ID

CNNVD-202601-2599

CVE-2025-70304

  • CNNVD Published: 2026-01-15

Description (Chinese)

GPAC是GPAC开源的一款开源的多媒体框架。 GPAC v2.4.0版本存在安全漏洞,该漏洞源于vobsub_get_subpic_duration函数存在缓冲区溢出,可能导致拒绝服务。

Description (English)

GPAC is an open-source multimedia framework for GPS open sources. There is a security loophole in version GPAC v2.4.0, which stems from the presence of a buffer zone spill, which may lead to the denial of services.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

GPAC

Published

2026-01-15

Last Modified

2026-02-24

References

https://github.com/zakkanijia/POC/blob/main/gpac_vobsub/GPAC_vobsub.md https://access.redhat.com/security/cve/cve-2025-70304

Share on: