CVE-2024-25453

Bento4 v1.6.0-640 was discovered to contain a NULL pointer dereference via the AP4_StszAtom::GetSampleSize() function.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:axiosys:bento4:1.6.0-640:*:*:*:*:*:*:*

History

12 Feb 2024, 21:38

Type Values Removed Values Added
First Time Axiosys
Axiosys bento4
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
References () https://github.com/axiomatic-systems/Bento4/issues/204 - () https://github.com/axiomatic-systems/Bento4/issues/204 - Exploit, Issue Tracking
References () https://github.com/axiomatic-systems/Bento4/issues/874 - () https://github.com/axiomatic-systems/Bento4/issues/874 - Exploit, Issue Tracking
CPE cpe:2.3:a:axiosys:bento4:1.6.0-640:*:*:*:*:*:*:*
CWE CWE-476
Summary
  • (es) Se descubrió que Bento4 v1.6.0-640 contenía una desreferencia de puntero NULL a través de la función AP4_StszAtom::GetSampleSize().

09 Feb 2024, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-02-09 15:15

Updated : 2024-02-12 21:38


NVD link : CVE-2024-25453

Mitre link : CVE-2024-25453

CVE.ORG link : CVE-2024-25453


JSON object : View

Products Affected

axiosys

  • bento4
CWE
CWE-476

NULL Pointer Dereference