CVE-2025-55649

A NULL pointer dereference in the gf_media_map_esd function (media_tools/isom_tools.c) of GPAC MP4Box v2.4 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MP4 file.
Configurations

No configuration.

History

15 Jun 2026, 21:16

Type Values Removed Values Added
References
  • () http://www.openwall.com/lists/oss-security/2026/06/13/11 -
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CWE CWE-476

15 Jun 2026, 20:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-15 20:16

Updated : 2026-06-15 21:16


NVD link : CVE-2025-55649

Mitre link : CVE-2025-55649

CVE.ORG link : CVE-2025-55649


JSON object : View

Products Affected

No product.

CWE
CWE-476

NULL Pointer Dereference