CVE-2022-3662
- EPSS 0.34%
- Veröffentlicht 26.10.2022 19:15:17
- Zuletzt bearbeitet 21.11.2024 07:19:58
A vulnerability was found in Axiomatic Bento4. It has been declared as critical. This vulnerability affects the function GetOffset of the file Ap4Sample.h of the component mp42hls. The manipulation leads to use after free. The attack can be initiated...
CVE-2022-40884
- EPSS 0.07%
- Veröffentlicht 19.10.2022 18:15:13
- Zuletzt bearbeitet 09.05.2025 15:15:54
Bento4 1.6.0 has memory leaks via the mp4fragment.
CVE-2022-40885
- EPSS 0.06%
- Veröffentlicht 19.10.2022 18:15:13
- Zuletzt bearbeitet 09.05.2025 15:15:54
Bento4 v1.6.0-639 has a memory allocation issue that can cause denial of service.
CVE-2022-43037
- EPSS 0.25%
- Veröffentlicht 19.10.2022 14:15:10
- Zuletzt bearbeitet 08.05.2025 20:15:24
An issue was discovered in Bento4 1.6.0-639. There is a memory leak in the function AP4_File::ParseStream in /Core/Ap4File.cpp.
CVE-2022-43038
- EPSS 0.26%
- Veröffentlicht 19.10.2022 14:15:10
- Zuletzt bearbeitet 08.05.2025 20:15:24
Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_BitReader::ReadCache() function in mp42ts.
CVE-2022-43032
- EPSS 0.24%
- Veröffentlicht 19.10.2022 14:15:09
- Zuletzt bearbeitet 08.05.2025 20:15:23
An issue was discovered in Bento4 v1.6.0-639. There is a memory leak in AP4_DescriptorFactory::CreateDescriptorFromStream in Core/Ap4DescriptorFactory.cpp, as demonstrated by mp42aac.
CVE-2022-43033
- EPSS 0.25%
- Veröffentlicht 19.10.2022 14:15:09
- Zuletzt bearbeitet 08.05.2025 20:15:23
An issue was discovered in Bento4 1.6.0-639. There is a bad free in the component AP4_HdlrAtom::~AP4_HdlrAtom() which allows attackers to cause a Denial of Service (DoS) via a crafted input.
CVE-2022-43034
- EPSS 0.26%
- Veröffentlicht 19.10.2022 14:15:09
- Zuletzt bearbeitet 08.05.2025 20:15:24
An issue was discovered in Bento4 v1.6.0-639. There is a heap buffer overflow vulnerability in the AP4_BitReader::SkipBits(unsigned int) function in mp42ts.
CVE-2022-43035
- EPSS 0.24%
- Veröffentlicht 19.10.2022 14:15:09
- Zuletzt bearbeitet 08.05.2025 20:15:24
An issue was discovered in Bento4 v1.6.0-639. There is a heap-buffer-overflow in AP4_Dec3Atom::AP4_Dec3Atom at Ap4Dec3Atom.cpp, leading to a Denial of Service (DoS), as demonstrated by mp42aac.
CVE-2022-41429
- EPSS 0.26%
- Veröffentlicht 03.10.2022 14:15:25
- Zuletzt bearbeitet 21.11.2024 07:23:12
Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_Atom::TypeFromString function in mp4tag.