CVE-2026-92472 | GPAC 26.08-DEV MP4Box base_scenegraph.c gf_node_deactivate_ex use after free (Issue 3831)

SecurityVulns

A vulnerability labeled as problematic has been found in GPAC 26.08-DEV. The affected element is the function gf_node_deactivate_ex of the file src/scenegraph/base_scenegraph.c of the component MP4Box. Executing a manipulation can lead to use after free.

This vulnerability is registered as CVE-2026-92472. The attack needs to be launched locally. Furthermore, an exploit is available.

The affected component should be upgraded.

This issue is distinct from CVE-2026-90827.VulDB Recent EntriesRead More