Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-15185— GPAC MP4Box vobsub.c vobsub_read_idx out-of-bounds

CVSS 3.3 · Low EPSS 0.11% · P2

Possible ATT&CK Techniques 1AI

T1203 · Exploitation for Client Execution

Affected Version Matrix 1

VendorProductVersion RangeStatus
n/aGPAC26.03-DEVaffected
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2026-15185

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
GPAC MP4Box vobsub.c vobsub_read_idx out-of-bounds
Source: CVE Program / CVE List V5
Vulnerability Description
A vulnerability was determined in GPAC 26.03-DEV. This affects the function vobsub_read_idx of the file /src/media_tools/vobsub.c of the component MP4Box. Executing a manipulation of the argument num_langs can lead to out-of-bounds read. The attack needs to be launched locally. The exploit has been publicly disclosed and may be utilized. This patch is called 532097084729a936bcdf6a27c41003f3bd7dc3ff. It is best practice to apply a patch to resolve this issue. Two different commits were applied to fix this issue.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Source: CVE Program / CVE List V5
Vulnerability Type
跨界内存读
Source: CVE Program / CVE List V5
Vulnerability Title
GPAC 缓冲区错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
GPAC是GPAC团队开源的一款开源的多媒体框架。 GPAC 26.03-DEV版本存在缓冲区错误漏洞,该漏洞源于MP4Box组件的文件/src/media_tools/vobsub.c中vobsub_read_idx函数对参数num_langs的操作,可能导致越界读取。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-GPAC 26.03-DEV cpe:2.3:a:gpac:gpac:*:*:*:*:*:*:*:*

II. Public POCs for CVE-2026-15185

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-15185

登录查看更多情报信息。

Patches & Fixes for CVE-2026-15185 (3)

Same Patch Batch · n/a · 2026-07-09 · 25 CVEs total

CVE-2026-151874.3 MEDIUMenquirer Public Package API Enquirer.set prototype pollution
CVE-2026-152024.3 MEDIUMYzmCMS Header yzmphp.php get_url cross site scripting
CVE-2026-151943.3 LOWOpen5GS AMF context.c amf_context_final use after free
CVE-2026-38076Artifex jbig2dec 拒绝服务漏洞
CVE-2026-39246kevva decompress 安全漏洞
CVE-2026-39243kevva decompress 安全漏洞
CVE-2026-39245kevva decompress 安全漏洞
CVE-2025-45422Proximus b-box 安全漏洞
CVE-2026-31267Mercusys MW302R 安全漏洞
CVE-2026-51923docuForm GmbH Client 安全漏洞
CVE-2026-51925docuForm GmbH Client 安全漏洞
CVE-2026-51926docuForm GmbH FSM Client 安全漏洞
CVE-2026-51924docuForm GmbH Client 任意文件上传漏洞
CVE-2025-63579Kyocera Command Center RX 信息泄露漏洞
CVE-2026-51602Tenda CP3 缓冲区错误漏洞
CVE-2026-51598Mercury MIPC252W IP Camera 输入验证错误漏洞
CVE-2026-51599MERCURY MIPC252W 安全漏洞
CVE-2026-51597Mercury MIPC252W 安全漏洞
CVE-2026-51603Tenda cp3 缓冲区错误漏洞
CVE-2026-51601Tenda cp3 缓冲区溢出漏洞

Showing top 20 of 25 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2026-15185

No comments yet


Leave a comment