Filtered by vendor Axiosys
Subscriptions
Filtered by product Bento4
Subscriptions
Total
136 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2020-23331 | 1 Axiosys | 1 Bento4 | 2021-08-25 | 7.5 High |
An issue was discovered in Bento4 version 06c39d9. A NULL pointer dereference exists in the AP4_DescriptorListWriter::Action component located in /Core/Ap4Descriptor.h. It allows an attacker to cause a denial of service (DOS). | ||||
CVE-2020-23330 | 1 Axiosys | 1 Bento4 | 2021-08-25 | 7.5 High |
An issue was discovered in Bento4 version 06c39d9. A NULL pointer dereference exists in the AP4_Stz2Atom::GetSampleSize component located in /Core/Ap4Stz2Atom.cpp. It allows an attacker to cause a denial of service (DOS). | ||||
CVE-2020-21066 | 1 Axiosys | 1 Bento4 | 2021-08-23 | 6.5 Medium |
An issue was discovered in Bento4 v1.5.1.0. There is a heap-buffer-overflow in AP4_Dec3Atom::AP4_Dec3Atom at Ap4Dec3Atom.cpp, leading to a denial of service (program crash), as demonstrated by mp42aac. | ||||
CVE-2021-35307 | 1 Axiosys | 1 Bento4 | 2021-08-12 | 6.5 Medium |
An issue was discovered in Bento4 through v1.6.0-636. A NULL pointer dereference exists in the AP4_DescriptorFinder::Test component located in /Core/Ap4Descriptor.h. It allows an attacker to cause a denial of service (DOS). | ||||
CVE-2021-35306 | 1 Axiosys | 1 Bento4 | 2021-08-12 | 6.5 Medium |
An issue was discovered in Bento4 through v1.6.0-636. A NULL pointer dereference exists in the function AP4_StszAtom::WriteFields located in Ap4StszAtom.cpp. It allows an attacker to cause a denial of service (DOS). | ||||
CVE-2020-19722 | 1 Axiosys | 1 Bento4 | 2021-07-15 | 6.5 Medium |
An unhandled memory allocation failure in Core/Ap4Atom.cpp of Bento 1.5.1-628 causes a direct copy to NULL pointer dereference, leading to a denial of service (DOS). | ||||
CVE-2020-19717 | 1 Axiosys | 1 Bento4 | 2021-07-15 | 6.5 Medium |
An unhandled memory allocation failure in Core/Ap48bdlAtom.cpp of Bento 1.5.1-628 causes a NULL pointer dereference, leading to a denial of service (DOS). | ||||
CVE-2020-19718 | 1 Axiosys | 1 Bento4 | 2021-07-15 | 6.5 Medium |
An unhandled memory allocation failure in Core/Ap4Atom.cpp of Bento 1.5.1-628 causes a NULL pointer dereference, leading to a denial of service (DOS). | ||||
CVE-2020-19719 | 1 Axiosys | 1 Bento4 | 2021-07-15 | 6.5 Medium |
A buffer overflow vulnerability in Ap4ElstAtom.cpp of Bento 1.5.1-628 leads to a denial of service (DOS). | ||||
CVE-2020-19720 | 1 Axiosys | 1 Bento4 | 2021-07-15 | 6.5 Medium |
An unhandled memory allocation failure in Core/AP4IkmsAtom.cpp of Bento 1.5.1-628 causes a NULL pointer dereference, leading to a denial of service (DOS). | ||||
CVE-2020-23912 | 1 Axiosys | 1 Bento4 | 2021-04-26 | 5.5 Medium |
An issue was discovered in Bento4 through v1.6.0-637. A NULL pointer dereference exists in the function AP4_StszAtom::GetSampleSize() located in Ap4StszAtom.cpp. It allows an attacker to cause Denial of Service. | ||||
CVE-2019-7699 | 1 Axiosys | 1 Bento4 | 2020-08-24 | N/A |
A heap-based buffer over-read occurs in AP4_BitStream::WriteBytes in Codecs/Ap4BitStream.cpp in Bento4 v1.5.1-627. Remote attackers could leverage this vulnerability to cause an exception via crafted mp4 input, which leads to a denial of service. | ||||
CVE-2019-7698 | 1 Axiosys | 1 Bento4 | 2020-08-24 | N/A |
An issue was discovered in AP4_Array<AP4_CttsTableEntry>::EnsureCapacity in Core/Ap4Array.h in Bento4 1.5.1-627. Crafted MP4 input triggers an attempt at excessive memory allocation, as demonstrated by mp42hls, a related issue to CVE-2018-20095. | ||||
CVE-2019-7697 | 1 Axiosys | 1 Bento4 | 2020-08-24 | N/A |
An issue was discovered in Bento4 v1.5.1-627. There is an assertion failure in AP4_AtomListWriter::Action in Core/Ap4Atom.cpp, leading to a denial of service (program crash), as demonstrated by mp42hls. | ||||
CVE-2019-6966 | 1 Axiosys | 1 Bento4 | 2020-08-24 | N/A |
An issue was discovered in Bento4 1.5.1-628. The AP4_ElstAtom class in Core/Ap4ElstAtom.cpp has an attempted excessive memory allocation related to AP4_Array<AP4_ElstEntry>::EnsureCapacity in Core/Ap4Array.h, as demonstrated by mp42hls. | ||||
CVE-2019-17528 | 1 Axiosys | 1 Bento4 | 2020-08-24 | 7.5 High |
An issue was discovered in Bento4 1.5.1.0. There is a SEGV in the function AP4_TfhdAtom::SetDefaultSampleSize at Core/Ap4TfhdAtom.h when called from AP4_Processor::ProcessFragments in Core/Ap4Processor.cpp. | ||||
CVE-2019-15048 | 1 Axiosys | 1 Bento4 | 2020-08-24 | N/A |
An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer overflow in the AP4_RtpAtom class at Core/Ap4RtpAtom.cpp. | ||||
CVE-2019-13238 | 1 Axiosys | 1 Bento4 | 2020-08-24 | N/A |
An issue was discovered in Bento4 1.5.1.0. A memory allocation failure is unhandled in Core/Ap4SdpAtom.cpp and leads to crashes. When parsing input video, the program allocates a new buffer to parse an atom in the stream. The unhandled memory allocation failure causes a direct copy to a NULL pointer. | ||||
CVE-2019-20090 | 1 Axiosys | 1 Bento4 | 2020-01-07 | 7.8 High |
An issue was discovered in Bento4 1.5.1.0. There is a use-after-free in AP4_Sample::GetOffset in Core/Ap4Sample.h when called from Ap4LinearReader.cpp. | ||||
CVE-2019-20091 | 1 Axiosys | 1 Bento4 | 2020-01-07 | 5.5 Medium |
An issue was discovered in Bento4 1.5.1.0. There is a NULL pointer dereference in AP4_Descriptor::GetTag in mp42ts when called from AP4_DecoderConfigDescriptor::GetDecoderSpecificInfoDescriptor in Ap4DecoderConfigDescriptor.cpp. |