Security Advisory

CVE-2026-36909

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-01 00:00:00
Last updated 2026-07-02 14:17:35
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

A NULL pointer dereference in the AP4_TkhdAtom::GetTrackId() function of Aleksoid1978 MPC-BE before commit 4341cb3 allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.