CVE-2025-60466 - CERT CVE
ID CVE-2025-60466
Sažetak A use-after-free in the gf_filter_pid_get_packet function (/filter_core/filter_pid.c) of GPAC Project/MP4Box before 26.02.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted media file.
Reference
CVSS
Base: 5.0
Impact: 3.6
Exploitability:1.3
Pristup
VektorSloženostAutentikacija
LOCAL LOW LOW
Impact
PovjerljivostCjelovitostDostupnost
NONE NONE HIGH
CVSS vektor CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H
Zadnje važnije ažuriranje 29-06-2026 - 23:29
Objavljeno 25-06-2026 - 00:17