CVE-2026-90685 | GPAC up to f1219cde MP4Box laser/lsr_dec.c lsr_exec_command_list assertion (Issue 3825)

SecurityVulns

A vulnerability has been found in GPAC up to f1219cde and classified as problematic. Affected by this issue is the function lsr_exec_command_list of the file laser/lsr_dec.c of the component MP4Box. The manipulation leads to reachable assertion.

This vulnerability is uniquely identified as CVE-2026-90685. Local access is required to approach this attack. Moreover, an exploit is present.

The affected component should be upgraded.VulDB Recent EntriesRead More