gpac v2.2.1 was discovered to contain a memory leak via the dst_props variable in the gf_filter_pid_merge_properties_internal function.
CVE ID: CVE-2024-24265
Vendor: n/a
Product: n/a
EPSS Score: 0.17% (probability of being exploited)
EPSS Percentile: 38.85% (scored less or equal to compared to others)
EPSS Date: 2025-06-07 (when was this score calculated)
SSVC Exploitation: poc
SSVC Technical Impact: partial
SSVC Automatable: true