Heap Use-After-Free Vulnerability in GPAC MP4Box
CVE-2025-55644
5.5MEDIUM
What is CVE-2025-55644?
A heap use-after-free vulnerability exists in the gf_node_get_tag function of GPAC MP4Box v2.4. This flaw can be exploited by attackers who supply specially crafted MP4 files, leading to a Denial of Service. When the application attempts to process such a file, the mishandling of memory can result in a crash or other unintended behavior, making the system unstable and inaccessible to legitimate users.
