A segmentation violaton in the gf_hevc_read_sps_bs_internal function (media_tools/av_parsers.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying crafted HEVC SPS data.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://infosec.exchange/@sigdevel/116710484148913883 |
|
History
Tue, 09 Jun 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A segmentation violaton in the gf_hevc_read_sps_bs_internal function (media_tools/av_parsers.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying crafted HEVC SPS data. | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-06-09T19:26:02.041Z
Reserved: 2025-06-16T00:00:00.000Z
Link: CVE-2025-52293
No data.
Status : Received
Published: 2026-06-09T19:17:31.177
Modified: 2026-06-09T19:17:31.177
Link: CVE-2025-52293
No data.
OpenCVE Enrichment
No data.
Weaknesses
No weakness.