In the SDK in Bento4 1.5.0-616, the AP4_StssAtom class in Ap4StssAtom.cpp contains a Write Memory Access Violation vulnerability. It is possible to exploit this vulnerability and possibly execute arbitrary code by opening a crafted .MP4 file.
References
Link Resource
https://github.com/axiomatic-systems/Bento4/issues/181 Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2017-09-11T09:00:00

Updated: 2017-09-11T08:57:01

Reserved: 2017-09-10T00:00:00


Link: CVE-2017-14260

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-09-11T09:29:00.623

Modified: 2018-09-19T17:50:24.513


Link: CVE-2017-14260

JSON object: View

cve-icon Redhat Information

No data.

CWE