CVE-2026-90792 | GPAC up to f1219cde MP4Box base_scenegraph.c gf_node_list_get_child Target null pointer dereference (Issue 3802)

SecurityVulns

A vulnerability classified as problematic has been found in GPAC up to f1219cde. This issue affects the function gf_node_list_get_child of the file scenegraph/base_scenegraph.c of the component MP4Box. This manipulation of the argument Target causes null pointer dereference.

This vulnerability is tracked as CVE-2026-90792. The attack is possible to be carried out remotely. Moreover, an exploit is present.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More