Components
Vulnerabilities
Pricing
MCP
Docs
Sign up
Login
Find vulnerabilities. Fix fast with AI.
Search components by package, version, or CVE to get started.
Ecosystem
Package
Version
Vulnerabilities
CVE-2025-70298
CVE-2025-70298
GPAC v2.4.0 was discovered to contain an out-of-bounds read in the oggdmx_parse_tags function.
Published Jan 27, 2026
https://github.com/advisories/GHSA-w268-23r7-r9xw
CVSS Score
High
8.8
Components Impacted
Components Impacted
Security Details
Security Details
Sonatype Research
Sonatype Research
Ecosystem
Package
Version
Ecosystem
Package
Version
rpm
gpac
2.4.0-7.el10_1
rpm
gpac-debuginfo
2.4.0-7.el10_1
rpm
gpac-debugsource
2.4.0-7.el10_1
rpm
gpac-devel
2.4.0-7.el10_1
rpm
gpac-doc
2.4.0-7.el10_1
rpm
gpac-libs
2.4.0-7.el10_1
rpm
gpac-libs-debuginfo
2.4.0-7.el10_1
rpm
gpac-static
2.4.0-7.el10_1
1-8 of 8
CVE-2025-70298 | Components Impacted | Sonatype Guide | Sonatype Guide