CVE-2025-55648 | GPAC 2.4 MP4Box media_tools/av_parsers.c gf_opus_parse_packet_header heap-based overflow (Nessus ID 320988)
A vulnerability was found in GPAC 2.4. It has been classified as critical. The impacted element is the function gf_opus_parse_packet_header of the file media_tools/av_parsers.c of the component MP4Box. The manipulation leads to heap-based buffer overflow.
This vulnerability is traded as CVE-2025-55648. It is possible to initiate the attack remotely. There is no exploit available.