SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-79514

MEDIUM · CVSS 6.5 EPSS 0.24% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-09-09 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

An out-of-bounds read vulnerability in the gf_dm_data_received function of GPAC v26.07.0 can be exploited by attackers to trigger a Denial of Service (DoS) through specially crafted HTTP requests. Organizations using this version of GPAC should prioritize applying the fix to mitigate potential service disruptions.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-79514
Severity
MEDIUM
CVSS
6.5
EPSS
0.24%

Original NVD Description

An out-of-bounds read in the gf_dm_data_received function (downloader.c) of GPAC v26.07.0 allows attackers to cause a Denial of Service (DoS) via sending a crafted HTTP request. Fixed in 2fd5a06ab226767900fd86edb5a1e8bfc1010640.