Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-89114
HistoryOct 09, 2022 - 12:00 a.m.

Bento4 Ap4Array.h Denial of Service Vulnerability

2022-10-0900:00:00
China National Vulnerability Database
www.cnvd.org.cn
8
bento4
denial of service
vulnerability
ap4array.h
excessive memory consumption
ap4_array
ensurecapacity
mp4 files
attack

0.001 Low

EPSS

Percentile

23.8%

Bento4 is an open source C library for reading and writing MP4 files. Bento4 version 1.6.0-639 suffers from a denial-of-service vulnerability that stems from excessive memory consumption in the AP4_Array <AP4_ElstEntry>::EnsureCapacity function in Core/Ap4Array.h. An attacker could exploit the vulnerability to cause a denial-of-service attack.

0.001 Low

EPSS

Percentile

23.8%

Related for CNVD-2022-89114