Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cq9c-6m4q-fv48

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

MP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substrings of atom names, leading to use of an inappropriate data type for associated atoms. The resulting type confusion can cause out-of-bounds memory access.

MP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substrings of atom names, leading to use of an inappropriate data type for associated atoms. The resulting type confusion can cause out-of-bounds memory access.

EPSS

Процентиль: 64%
0.00472
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-704

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 7 лет назад

MP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substrings of atom names, leading to use of an inappropriate data type for associated atoms. The resulting type confusion can cause out-of-bounds memory access.

CVSS3: 9.8
nvd
больше 7 лет назад

MP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substrings of atom names, leading to use of an inappropriate data type for associated atoms. The resulting type confusion can cause out-of-bounds memory access.

CVSS3: 9.8
debian
больше 7 лет назад

MP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substring ...

EPSS

Процентиль: 64%
0.00472
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-704