Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-00375
HistoryAug 17, 2021 - 12:00 a.m.

Bento4 Heap Buffer Overflow Vulnerability (CNVD-2023-00375)

2021-08-1700:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
bento4
heap buffer overflow
ap4 dec3atom
denial of service
vulnerability
version 1.5.1.0

EPSS

0.001

Percentile

44.2%

Bento4 is an open source C library for reading and writing MP4 files. Bento4 version 1.5.1.0 has a heap buffer overflow vulnerability, which stems from AP4 Dec3Atom::AP4 Dec3Atom in Ap4Dec3Atom.cpp lacks proper boundary checking and can be exploited by attackers to cause a denial of service impact.

EPSS

0.001

Percentile

44.2%

Related for CNVD-2023-00375