CVE-2026-71614

An issue in GPAC c2dee3aff638cd96f9617ac5b17dc2868cd90ef3 allows an attacker to execute arbitrary code via the src/media_tools/dvb_mpe.c, descriptorTime_slice_fec_identifier() and gf_m2ts_ipdatagram_reader() components. Fixed in 0e4093392e1f847c90d20e031e893cd942fef938.

  • Published Sep 9, 2026
  • CVSS 8.4 high
  • 0.2% chance of exploitation in the next 30 days (EPSS)
  • A fix is available

CVE-2026-71614 at the National Vulnerability Database