Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
bento4 bento4 vulnerabilities and exploits
(subscribe to this query)
7.8
CVSSv3
CVE-2022-3670
A vulnerability was found in Axiomatic Bento4. It has been classified as critical. Affected is the function WriteSample of the component mp42hevc. The manipulation leads to heap-based buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to...
Axiosys Bento4 1.6.0-639
5.5
CVSSv3
CVE-2023-29575
Bento4 v1.6.0-639 exists to contain an out-of-memory bug in the mp42aac component.
Axiosys Bento4 1.6.0-639
5.5
CVSSv3
CVE-2022-40885
Bento4 v1.6.0-639 has a memory allocation issue that can cause denial of service.
Axiosys Bento4 1.6.0-639
1 Github repository
5.5
CVSSv3
CVE-2022-41845
An issue exists in Bento4 1.6.0-639. There ie excessive memory consumption in the function AP4_Array<AP4_ElstEntry>::EnsureCapacity in Core/Ap4Array.h.
Axiosys Bento4 1.6.0-639
5.5
CVSSv3
CVE-2022-41847
An issue exists in Bento4 1.6.0-639. A memory leak exists in AP4_StdcFileByteStream::Create(AP4_FileByteStream*, char const*, AP4_FileByteStream::Mode, AP4_ByteStream*&) in System/StdC/Ap4StdCFileByteStream.cpp.
Axiosys Bento4 1.6.0-639
7.5
CVSSv3
CVE-2018-13848
An issue has been found in Bento4 1.5.1-624. It is a SEGV in AP4_StszAtom::GetSampleSize in Core/Ap4StszAtom.cpp.
Axiosys Bento4 1.5.1-624
6.5
CVSSv3
CVE-2018-20186
An issue exists in Bento4 1.5.1-627. AP4_Sample::ReadData in Core/Ap4Sample.cpp allows malicious users to trigger an attempted excessive memory allocation, related to AP4_DataBuffer::SetDataSize and AP4_DataBuffer::ReallocateBuffer in Core/Ap4DataBuffer.cpp.
Axiosys Bento4 1.5.1-627
5.5
CVSSv3
CVE-2018-14545
There exists one invalid memory read bug in AP4_SampleDescription::GetType() in Ap4SampleDescription.h in Bento4 1.5.1-624, which can allow malicious users to cause a denial-of-service via a crafted mp4 file. This vulnerability can be triggered by the executable mp42ts.
Axiosys Bento4 1.5.1-624
6.5
CVSSv3
CVE-2018-20095
An issue exists in EnsureCapacity in Core/Ap4Array.h in Bento4 1.5.1-627. Crafted MP4 input triggers an attempt at excessive memory allocation, as demonstrated by mp42hls.
Axiosys Bento4 1.5.1-627
6.5
CVSSv3
CVE-2018-20407
An issue exists in Bento4 1.5.1-627. There is a memory leak in AP4_DescriptorFactory::CreateDescriptorFromStream in Core/Ap4DescriptorFactory.cpp, as demonstrated by mp42hls.
Axiosys Bento4 1.5.1-627
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
3
4
5
6
7
8
9
10
NEXT »