Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-00374
HistoryAug 18, 2021 - 12:00 a.m.

Bento4 Heap Buffer Overflow Vulnerability

2021-08-1800:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
bento4
heap buffer overflow
mp4 files
denial of service

EPSS

0.002

Percentile

52.4%

Bento4 is an open source C library for reading and writing MP4 files. Bento4 suffers from a heap buffer overflow vulnerability, which stems from a lack of proper boundary checking in the AP4_StdcFileByteStream :: ReadPartial component of /StdC/Ap4StdCFileByteStream.cpp. An attacker could exploit this vulnerability to cause a denial of service impact.

EPSS

0.002

Percentile

52.4%

Related for CNVD-2023-00374