THREAT OPS › Threat News › [NVD] CVE-2026-90578 (MEDIUM 5.3) — A flaw has been found in GPAC up to f1219cde. Affected by this issue is the function gf_list_count of the file utils/list.c of the component MP4Box. Executing a manipulation can lead to use after free. The attack is restricted to local execution. The exploit has been published an
[NVD] CVE-2026-90578 (MEDIUM 5.3) — A flaw has been found in GPAC up to f1219cde. Affected by this issue is the function gf_list_count of the file utils/list.c of the component MP4Box. Executing a manipulation can lead to use after free. The attack is restricted to local execution. The exploit has been published an
CVE-2026-90578 CVSS: 5.3 MEDIUM Published: 2026-09-13T19:16:53.350
A flaw has been found in GPAC up to f1219cde. Affected by this issue is the function gf_list_count of the file utils/list.c of the component MP4Box. Executing a manipulation can lead to use after free. The attack is restricted to local execution. The exploit has been published and may be used. Upgrading to version abi-16.23 can re
Indicators of compromise
- 49dee5cad329cfed310c1682703df7daa47df31asha1
- CVE-2026-90578cve
Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-90578