Impact
This vulnerability arises from an out-of-bounds read in the function gf_rtp_parse_ttxt of the RTP Depacketizer component. By manipulating the argument size an attacker can cause the program to read memory beyond the buffer bounds. Although the description does not confirm code execution, a read of sensitive data or a crash could be induced, allowing remote exploitation through the RTP interface.
Affected Systems
It affects the GPAC media player library version 26.08-DEV. The flaw was fixed in the abi-16.26 release, which incorporates the commit 6bb0f64b4d1039c0fecd14ee2c1ee861d8661a68. Administrators using GPAC 26.08-DEV should upgrade to the patched version.
Risk and Exploitability
The CVSS score of 6.9 indicates moderate severity, and the EPSS of less than 1 percent suggests a low probability of exploitation. The vulnerability is not listed in the CISA KEV catalog. Attackers would need network access to the RTP stream handler and could achieve memory disclosure or crash conditions. Prioritizing an update or patch is recommended.
OpenCVE Enrichment