THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-90578 (MEDIUM 5.3) — A flaw has been found in GPAC up to f1219cde. Affected by this issue is the function gf_list_count of the file utils/list.c of the component MP4Box. Executing a manipulation can lead to use after free. The attack is restricted to local execution. The exploit has been published an

[NVD] CVE-2026-90578 (MEDIUM 5.3) — A flaw has been found in GPAC up to f1219cde. Affected by this issue is the function gf_list_count of the file utils/list.c of the component MP4Box. Executing a manipulation can lead to use after free. The attack is restricted to local execution. The exploit has been published an

highnvdPublished 2026-09-13

CVE-2026-90578 CVSS: 5.3 MEDIUM Published: 2026-09-13T19:16:53.350

A flaw has been found in GPAC up to f1219cde. Affected by this issue is the function gf_list_count of the file utils/list.c of the component MP4Box. Executing a manipulation can lead to use after free. The attack is restricted to local execution. The exploit has been published and may be used. Upgrading to version abi-16.23 can re

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-90578