Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-87941
HistoryOct 11, 2022 - 12:00 a.m.

Bento4 AP4_BitReader::ReadBits buffer overflow vulnerability

2022-10-1100:00:00
China National Vulnerability Database
www.cnvd.org.cn
9
bento4
buffer overflow
ap4_bitreader
readbits
vulnerability
mp4 files
heap overflow
attacker
confidentiality
integrity
availability
cnvd

EPSS

0.002

Percentile

56.8%

Bento4 is an open source C library for reading and writing MP4 files. version v1.6.0-639 of Bento4 suffers from a buffer overflow vulnerability, which stems from a heap overflow in the AP4_BitReader::ReadBits function of the mp4mux component. An attacker could exploit the vulnerability to affect the confidentiality, integrity, or availability of the system.

EPSS

0.002

Percentile

56.8%

Related for CNVD-2022-87941