CVE-2026-92472 | GPAC 26.08-DEV MP4Box base_scenegraph.c gf_node_deactivate_ex use after free (Issue 3831)
A vulnerability labeled as problematic has been found in GPAC 26.08-DEV. The affected element is the function gf_node_deactivate_ex of the file src/scenegraph/base_scenegraph.c of the component MP4Box. Executing a manipulation can lead to use after free.
This vulnerability is registered as CVE-2026-92472. The attack needs to be launched locally. Furthermore, an exploit is available.
The affected component should be upgraded.
This issue is distinct from CVE-2026-90827.VulDB Recent EntriesRead More