Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2022-3785

Опубликовано: 31 окт. 2022
Источник: nvd
CVSS3: 6.3
CVSS3: 7.8
EPSS Низкий

Описание

A vulnerability, which was classified as critical, has been found in Axiomatic Bento4. Affected by this issue is the function AP4_DataBuffer::SetDataSize of the component Avcinfo. The manipulation leads to heap-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-212564.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:axiosys:bento4:1.6.0-639:*:*:*:*:*:*:*

EPSS

Процентиль: 59%
0.00386
Низкий

6.3 Medium

CVSS3

7.8 High

CVSS3

Дефекты

CWE-119
CWE-787

Связанные уязвимости

CVSS3: 6.3
ubuntu
больше 3 лет назад

A vulnerability, which was classified as critical, has been found in Axiomatic Bento4. Affected by this issue is the function AP4_DataBuffer::SetDataSize of the component Avcinfo. The manipulation leads to heap-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-212564.

CVSS3: 7.8
github
больше 3 лет назад

A vulnerability, which was classified as critical, has been found in Axiomatic Bento4. Affected by this issue is the function AP4_DataBuffer::SetDataSize of the component Avcinfo. The manipulation leads to heap-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-212564.

EPSS

Процентиль: 59%
0.00386
Низкий

6.3 Medium

CVSS3

7.8 High

CVSS3

Дефекты

CWE-119
CWE-787