Описание
An issue was discovered in Bento4 v1.6.0-641-2-g1529b83. There is a heap-use-after-free in AP4_SubStream::~AP4_SubStream at Ap4ByteStream.cpp, leading to a Denial of Service (DoS), as demonstrated by mp42ts.
Ссылки
- ExploitIssue TrackingThird Party Advisory
- Third Party Advisory
- ExploitIssue TrackingThird Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:axiosys:bento4:1.6.0-641:*:*:*:*:*:*:*
EPSS
Процентиль: 11%
0.00038
Низкий
2.7 Low
CVSS3
Дефекты
CWE-416
Связанные уязвимости
CVSS3: 2.7
github
почти 2 года назад
An issue was discovered in Bento4 v1.6.0-641-2-g1529b83. There is a heap-use-after-free in AP4_SubStream::~AP4_SubStream at Ap4ByteStream.cpp, leading to a Denial of Service (DoS), as demonstrated by mp42ts.
EPSS
Процентиль: 11%
0.00038
Низкий
2.7 Low
CVSS3
Дефекты
CWE-416