Home/Product/axiosys bento4
Product

axiosys bento4

171 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2025-8537
<= 1.6.0-641
A vulnerability, which was classified as problematic, was found in Axiomatic Bento4 up to 1.6.0-641. Affected is the function AP4_
3.7LOW
CVE-2025-25947
all versions
An issue in Bento4 v1.6.0-641 allows an attacker to trigger a segmentation fault via Ap4Atom.cpp, specifically in AP4_AtomParent::
5.5MEDIUM
CVE-2025-25946
all versions
An issue in Bento4 v1.6.0-641 allows an attacker to cause a memory leak via Ap4Marlin.cpp and Ap4Processor.cpp, specifically in AP
5.5MEDIUM
CVE-2025-25945
all versions
An issue in Bento4 v1.6.0-641 allows an attacker to obtain sensitive information via the Mp4Fragment.cpp and in AP4_Descriptor
6.5MEDIUM
CVE-2025-25944
all versions
Buffer Overflow vulnerability in Bento4 v.1.6.0-641 allows a local attacker to execute arbitrary code via the Ap4RtpAtom.cpp, spec
7.3HIGH
CVE-2025-25943
all versions
Buffer Overflow vulnerability in Bento4 v.1.6.0-641 allows a local attacker to execute arbitrary code via the AP4_Stz2Atom::AP4_St
7.8HIGH
CVE-2025-25942
all versions
An issue in Bento4 v1.6.0-641 allows an attacker to obtain sensitive information via the mp4fragment tool when processing inva
6.5MEDIUM
CVE-2024-57598
all versions
A floating point exception (divide-by-zero) vulnerability was discovered in Bento4 1.6.0-641 in function AP4_TfraAtom() of Ap4Tfra
6.5MEDIUM
CVE-2025-0870
<= 1.6.0-641
A vulnerability was found in Axiomatic Bento4 up to 1.6.0-641. It has been rated as critical. Affected by this issue is the functi
5.6MEDIUM
CVE-2025-0753
<= 1.6.0
A vulnerability classified as critical was found in Axiomatic Bento4 up to 1.6.0. This vulnerability affects the function AP4_Stdc
6.3MEDIUM
CVE-2025-0751
<= 1.6.0
A vulnerability classified as critical has been found in Axiomatic Bento4 up to 1.6.0. This affects the function AP4_BitReader::Re
6.3MEDIUM
CVE-2024-30809
all versions
An issue was discovered in Bento4 v1.6.0-641-2-g1529b83. There is a heap-use-after-free in Ap4Sample.h in AP4_Sample::GetOffset()
7.5HIGH
CVE-2024-30808
all versions
An issue was discovered in Bento4 v1.6.0-641-2-g1529b83. There is a heap-use-after-free in AP4_SubStream::~AP4_SubStream at Ap4Byt
2.7LOW
CVE-2024-30807
all versions
An issue was discovered in Bento4 v1.6.0-641-2-g1529b83. There is a heap-use-after-free in AP4_UnknownAtom::~AP4_UnknownAtom at Ap
7.5HIGH
CVE-2024-30806
all versions
An issue was discovered in Bento4 v1.6.0-641-2-g1529b83. There is a heap overflow in AP4_Dec3Atom::AP4_Dec3Atom at Ap4Dec3Atom.cpp
6.5MEDIUM
CVE-2024-31005
all versions
An issue in Bento4 Bento v.1.6.0-641 allows a remote attacker to execute arbitrary code via the Ap4MdhdAtom.cpp,AP4_MdhdAtom::AP4_
8.1HIGH
CVE-2024-31004
all versions
An issue in Bento4 Bento v.1.6.0-641 allows a remote attacker to execute arbitrary code via the Ap4StsdAtom.cpp,AP4_StsdAtom::AP4_
9.8CRITICAL
CVE-2024-31003
all versions
Buffer Overflow vulnerability in Bento4 Bento v.1.6.0-641 allows a remote attacker to execute arbitrary code via the AP4_MemoryByt
8.8HIGH
CVE-2024-31002
all versions
Buffer Overflow vulnerability in Bento4 Bento v.1.6.0-641 allows a remote attacker to execute arbitrary code via the AP4 BitReader
9.8CRITICAL
CVE-2024-24155
all versions
Bento4 v1.5.1-628 contains a Memory leak on AP4_Movie::AP4_Movie, parsing tracks and added into m_Tracks list, but mp42aac cannot
6.5MEDIUM
CVE-2024-25454
all versions
Bento4 v1.6.0-640 was discovered to contain a NULL pointer dereference via the AP4_DescriptorFinder::Test() function.
5.5MEDIUM
CVE-2024-25453
all versions
Bento4 v1.6.0-640 was discovered to contain a NULL pointer dereference via the AP4_StszAtom::GetSampleSize() function.
5.5MEDIUM
CVE-2024-25452
all versions
Bento4 v1.6.0-640 was discovered to contain an out-of-memory bug via the AP4_UrlAtom::AP4_UrlAtom() function.
5.5MEDIUM
CVE-2024-25451
all versions
Bento4 v1.6.0-640 was discovered to contain an out-of-memory bug via the AP4_DataBuffer::ReallocateBuffer() function.
6.5MEDIUM
CVE-2023-38666
all versions
Bento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_Processor::ProcessFragments function in mp4encryp
5.5MEDIUM
CVE-2023-29575
all versions
Bento4 v1.6.0-639 was discovered to contain an out-of-memory bug in the mp42aac component.
5.5MEDIUM
CVE-2023-29573
all versions
Bento4 v1.6.0-639 was discovered to contain an out-of-memory bug in the mp4info component.
5.5MEDIUM
CVE-2023-29574
all versions
Bento4 v1.6.0-639 was discovered to contain an out-of-memory bug in the mp42avc component.
5.5MEDIUM
CVE-2023-29576
all versions
Bento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_TrunAtom::SetDataOffset(int) function in Ap4TrunA
5.5MEDIUM
CVE-2022-4584
<= 1.6.0-639
A vulnerability was found in Axiomatic Bento4 up to 1.6.0-639. It has been rated as critical. Affected by this issue is some unkno
6.3MEDIUM
CVE-2022-3974
all versions
A vulnerability classified as critical was found in Axiomatic Bento4. Affected by this vulnerability is the function AP4_StdcFileB
6.3MEDIUM
CVE-2022-3810
<= 1.6.0-639
A vulnerability was found in Axiomatic Bento4. It has been classified as problematic. This affects the function AP4_File::AP4_File
4.3MEDIUM
CVE-2022-3809
<= 1.6.0-639
A vulnerability was found in Axiomatic Bento4 and classified as problematic. Affected by this issue is the function ParseCommandLi
4.3MEDIUM
CVE-2022-3817
all versions
A vulnerability has been found in Axiomatic Bento4 and classified as problematic. Affected by this vulnerability is an unknown fun
4.3MEDIUM
CVE-2022-3816
all versions
A vulnerability, which was classified as problematic, was found in Axiomatic Bento4. Affected is an unknown function of the compon
4.3MEDIUM
CVE-2022-3815
all versions
A vulnerability, which was classified as problematic, has been found in Axiomatic Bento4. This issue affects some unknown processi
4.3MEDIUM
CVE-2022-3814
all versions
A vulnerability classified as problematic was found in Axiomatic Bento4. This vulnerability affects unknown code of the component
4.3MEDIUM
CVE-2022-3813
all versions
A vulnerability classified as problematic has been found in Axiomatic Bento4. This affects an unknown part of the component mp4edi
4.3MEDIUM
CVE-2022-3812
all versions
A vulnerability was found in Axiomatic Bento4. It has been rated as problematic. Affected by this issue is the function AP4_Contai
4.3MEDIUM
CVE-2022-3807
all versions
A vulnerability was found in Axiomatic Bento4. It has been rated as problematic. Affected by this issue is some unknown functional
4.3MEDIUM
CVE-2022-3785
all versions
A vulnerability, which was classified as critical, has been found in Axiomatic Bento4. Affected by this issue is the function AP4_
6.3MEDIUM
CVE-2022-3784
all versions
A vulnerability classified as critical was found in Axiomatic Bento4 5e7bb34. Affected by this vulnerability is the function AP4_M
6.3MEDIUM
CVE-2022-3670
all versions
A vulnerability was found in Axiomatic Bento4. It has been classified as critical. Affected is the function WriteSample of the com
7.3HIGH
CVE-2022-3669
all versions
A vulnerability was found in Axiomatic Bento4 and classified as problematic. This issue affects the function AP4_AvccAtom::Create
5.3MEDIUM
CVE-2022-3668
all versions
A vulnerability has been found in Axiomatic Bento4 and classified as problematic. This vulnerability affects the function AP4_Atom
5.3MEDIUM
CVE-2022-3667
all versions
A vulnerability, which was classified as critical, was found in Axiomatic Bento4. This affects the function AP4_MemoryByteStream::
7.3HIGH
CVE-2022-3666
all versions
A vulnerability, which was classified as critical, has been found in Axiomatic Bento4. Affected by this issue is the function AP4_
7.3HIGH
CVE-2022-3665
all versions
A vulnerability classified as critical was found in Axiomatic Bento4. Affected by this vulnerability is an unknown functionality o
7.3HIGH
CVE-2022-3664
all versions
A vulnerability classified as critical has been found in Axiomatic Bento4. Affected is the function AP4_BitStream::WriteBytes of t
7.3HIGH
CVE-2022-3663
all versions
A vulnerability was found in Axiomatic Bento4. It has been rated as problematic. This issue affects the function AP4_StsdAtom of t
5.3MEDIUM
CVE-2022-3662
all versions
A vulnerability was found in Axiomatic Bento4. It has been declared as critical. This vulnerability affects the function GetOffset
7.3HIGH
CVE-2022-40885
all versions
Bento4 v1.6.0-639 has a memory allocation issue that can cause denial of service.
5.5MEDIUM
CVE-2022-40884
all versions
Bento4 1.6.0 has memory leaks via the mp4fragment.
5.5MEDIUM
CVE-2022-43038
all versions
Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_BitReader::ReadCache() function in mp42ts.
6.5MEDIUM
CVE-2022-43037
all versions
An issue was discovered in Bento4 1.6.0-639. There is a memory leak in the function AP4_File::ParseStream in /Core/Ap4File.cpp.
6.5MEDIUM
CVE-2022-43035
all versions
An issue was discovered in Bento4 v1.6.0-639. There is a heap-buffer-overflow in AP4_Dec3Atom::AP4_Dec3Atom at Ap4Dec3Atom.cpp, le
6.5MEDIUM
CVE-2022-43034
all versions
An issue was discovered in Bento4 v1.6.0-639. There is a heap buffer overflow vulnerability in the AP4_BitReader::SkipBits(unsigne
6.5MEDIUM
CVE-2022-43033
all versions
An issue was discovered in Bento4 1.6.0-639. There is a bad free in the component AP4_HdlrAtom::~AP4_HdlrAtom() which allows attac
6.5MEDIUM
CVE-2022-43032
all versions
An issue was discovered in Bento4 v1.6.0-639. There is a memory leak in AP4_DescriptorFactory::CreateDescriptorFromStream in Core/
6.5MEDIUM
CVE-2022-41430
all versions
Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_BitReader::ReadBit function in mp4mux.
8.8HIGH
CVE-2022-41429
all versions
Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_Atom::TypeFromString function in mp4tag.
8.8HIGH
CVE-2022-41428
all versions
Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_BitReader::ReadBits function in mp4mux.
8.8HIGH
CVE-2022-41427
all versions
Bento4 v1.6.0-639 was discovered to contain a memory leak in the AP4_AvcFrameParser::Feed function in mp4mux.
6.5MEDIUM
CVE-2022-41426
all versions
Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_AtomFactory::CreateAtomFromStream function in mp4split.
6.5MEDIUM
CVE-2022-41425
all versions
Bento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_Processor::ProcessFragments function in mp4decryp
6.5MEDIUM
CVE-2022-41424
all versions
Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_SttsAtom::Create function in mp42hls.
6.5MEDIUM
CVE-2022-41423
all versions
Bento4 v1.6.0-639 was discovered to contain a segmentation violation in the mp4fragment component.
6.5MEDIUM
CVE-2022-41419
all versions
Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_Processor::Process function in the mp4encrypt binary.
6.5MEDIUM
CVE-2022-41847
all versions
An issue was discovered in Bento4 1.6.0-639. A memory leak exists in AP4_StdcFileByteStream::Create(AP4_FileByteStream*, char cons
5.5MEDIUM
CVE-2022-41846
all versions
An issue was discovered in Bento4 1.6.0-639. There ie excessive memory consumption in the function AP4_DataBuffer::ReallocateBuffe
5.5MEDIUM
CVE-2022-41845
all versions
An issue was discovered in Bento4 1.6.0-639. There ie excessive memory consumption in the function AP4_Array<AP4_ElstEntry>::Ensur
5.5MEDIUM
CVE-2022-41841
<= 1.6.0-639
An issue was discovered in Bento4 through 1.6.0-639. A NULL pointer dereference occurs in AP4_File::ParseStream in Core/Ap4File.cp
5.5MEDIUM
CVE-2022-40775
<= 1.6.0-639
An issue was discovered in Bento4 through 1.6.0-639. A NULL pointer dereference occurs in AP4_StszAtom::WriteFields.
5.5MEDIUM
CVE-2022-40774
<= 1.6.0-639
An issue was discovered in Bento4 through 1.6.0-639. There is a NULL pointer dereference in AP4_StszAtom::GetSampleSize.
5.5MEDIUM
CVE-2022-40738
<= 1.6.0-639
An issue was discovered in Bento4 through 1.6.0-639. A NULL pointer dereference occurs in AP4_DescriptorListWriter::Action in Core
6.5MEDIUM
CVE-2022-40737
<= 1.6.0-639
An issue was discovered in Bento4 through 1.6.0-639. A buffer over-read exists in the function AP4_StdcFileByteStream::WritePartia
6.5MEDIUM
CVE-2022-40736
all versions
An issue was discovered in Bento4 1.6.0-639. There ie excessive memory consumption in AP4_CttsAtom::Create in Core/Ap4CttsAtom.cpp
6.5MEDIUM
CVE-2022-40439
all versions
An memory leak issue was discovered in AP4_StdcFileByteStream::Create in mp42ts in Bento4 v1.6.0-639, allows attackers to cause a
6.5MEDIUM
CVE-2022-40438
all versions
Buffer overflow vulnerability in function AP4_MemoryByteStream::WritePartial in mp42aac in Bento4 v1.6.0-639, allows attackers to
6.5MEDIUM
CVE-2022-35165
all versions
An issue in AP4_SgpdAtom::AP4_SgpdAtom() of Bento4-1.6.0-639 allows attackers to cause a Denial of Service (DoS) via a crafted mp4
5.5MEDIUM
CVE-2021-40943
all versions
In Bento4 1.6.0-638, there is a null pointer reference in the function AP4_DescriptorListInspector::Action function in Ap4Descript
5.5MEDIUM
CVE-2021-40941
all versions
In Bento4 1.6.0-638, there is an allocator is out of memory in the function AP4_Array<AP4_TrunAtom::Entry>::EnsureCapacity in Ap4A
7.5HIGH
CVE-2022-31287
all versions
An issue was discovered in Bento4 v1.2. There is an allocation size request error in /Ap4RtpAtom.cpp.
5.5MEDIUM
CVE-2022-31285
all versions
An issue was discovered in Bento4 1.2. The allocator is out of memory in /Source/C++/Core/Ap4Array.h.
5.5MEDIUM
CVE-2022-31282
all versions
Bento4 MP4Dump v1.2 was discovered to contain a segmentation violation via an unknown address at /Source/C++/Core/Ap4DataBuffer.cp
5.5MEDIUM
CVE-2022-29017
all versions
Bento4 v1.6.0.0 was discovered to contain a segmentation fault via the component /x86_64/multiarch/strlen-avx2.S.
5.5MEDIUM
CVE-2022-27607
all versions
Bento4 1.6.0-639 has a heap-based buffer over-read in the AP4_HvccAtom class, a different issue than CVE-2018-14531.
8.1HIGH
CVE-2021-32265
<= 1.6.0-637
An issue was discovered in Bento4 through v1.6.0-637. A global-buffer-overflow exists in the function AP4_MemoryByteStream::WriteP
8.8HIGH
CVE-2018-10790
all versions
The AP4_CttsAtom class in Core/Ap4CttsAtom.cpp in Bento4 1.5.1.0 allows remote attackers to cause a denial of service (application
7.5HIGH
CVE-2020-23334
< 1.6.0-635
A WRITE memory access in the AP4_NullTerminatedStringAtom::AP4_NullTerminatedStringAtom component of Bento4 version 06c39d9 can le
7.5HIGH
CVE-2020-23333
< 1.6.0-635
A heap-based buffer overflow exists in the AP4_CttsAtom::AP4_CttsAtom component located in /Core/Ap4Utils.h of Bento4 version 06c3
7.5HIGH
CVE-2020-23332
all versions
A heap-based buffer overflow exists in the AP4_StdcFileByteStream::ReadPartial component located in /StdC/Ap4StdCFileByteStream.cp
7.5HIGH
CVE-2020-23331
all versions
An issue was discovered in Bento4 version 06c39d9. A NULL pointer dereference exists in the AP4_DescriptorListWriter::Action compo
7.5HIGH
CVE-2020-23330
< 1.6.0-635
An issue was discovered in Bento4 version 06c39d9. A NULL pointer dereference exists in the AP4_Stz2Atom::GetSampleSize component
7.5HIGH
CVE-2020-21066
all versions
An issue was discovered in Bento4 v1.5.1.0. There is a heap-buffer-overflow in AP4_Dec3Atom::AP4_Dec3Atom at Ap4Dec3Atom.cpp, lead
6.5MEDIUM
CVE-2021-35307
<= 1.6.0-636
An issue was discovered in Bento4 through v1.6.0-636. A NULL pointer dereference exists in the AP4_DescriptorFinder::Test componen
6.5MEDIUM
CVE-2021-35306
<= 1.6.0-636
An issue was discovered in Bento4 through v1.6.0-636. A NULL pointer dereference exists in the function AP4_StszAtom::WriteFields
6.5MEDIUM
CVE-2020-19722
all versions
An unhandled memory allocation failure in Core/Ap4Atom.cpp of Bento 1.5.1-628 causes a direct copy to NULL pointer dereference, le
6.5MEDIUM
CVE-2020-19721
all versions
A heap buffer overflow vulnerability in Ap4TrunAtom.cpp of Bento 1.5.1-628 may lead to an out-of-bounds write while running mp42aa
6.5MEDIUM
CVE-2020-19720
all versions
An unhandled memory allocation failure in Core/AP4IkmsAtom.cpp of Bento 1.5.1-628 causes a NULL pointer dereference, leading to a
6.5MEDIUM
CVE-2020-19719
all versions
A buffer overflow vulnerability in Ap4ElstAtom.cpp of Bento 1.5.1-628 leads to a denial of service (DOS).
6.5MEDIUM
CVE-2020-19718
all versions
An unhandled memory allocation failure in Core/Ap4Atom.cpp of Bento 1.5.1-628 causes a NULL pointer dereference, leading to a deni
6.5MEDIUM
CVE-2020-19717
all versions
An unhandled memory allocation failure in Core/Ap48bdlAtom.cpp of Bento 1.5.1-628 causes a NULL pointer dereference, leading to a
6.5MEDIUM
CVE-2020-23912
<= 1.6.0-637
An issue was discovered in Bento4 through v1.6.0-637. A NULL pointer dereference exists in the function AP4_StszAtom::GetSampleSiz
5.5MEDIUM
CVE-2019-20092
all versions
An issue was discovered in Bento4 1.5.1.0. There is a NULL pointer dereference in AP4_Descriptor::GetTag in mp42ts when called fro
5.5MEDIUM
CVE-2019-20091
all versions
An issue was discovered in Bento4 1.5.1.0. There is a NULL pointer dereference in AP4_Descriptor::GetTag in mp42ts when called fro
5.5MEDIUM
CVE-2019-20090
all versions
An issue was discovered in Bento4 1.5.1.0. There is a use-after-free in AP4_Sample::GetOffset in Core/Ap4Sample.h when called from
7.8HIGH
CVE-2019-17530
all versions
An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in AP4_PrintInspector::AddField in Core/Ap4Atom.
7.8HIGH
CVE-2019-17529
all versions
An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in AP4_CencSampleEncryption::DoInspectFields in
7.8HIGH
CVE-2019-17528
all versions
An issue was discovered in Bento4 1.5.1.0. There is a SEGV in the function AP4_TfhdAtom::SetDefaultSampleSize at Core/Ap4TfhdAtom.
7.5HIGH
CVE-2019-17454
all versions
Bento4 1.5.1.0 has a NULL pointer dereference in AP4_Descriptor::GetTag in Core/Ap4Descriptor.h, related to AP4_StsdAtom::GetSampl
6.5MEDIUM
CVE-2019-17453
all versions
Bento4 1.5.1.0 has a NULL pointer dereference in AP4_DescriptorListWriter::Action in Core/Ap4Descriptor.h, related to AP4_IodsAtom
6.5MEDIUM
CVE-2019-17452
all versions
Bento4 1.5.1.0 has a NULL pointer dereference in AP4_DescriptorListInspector::Action in Core/Ap4Descriptor.h, related to AP4_IodsA
6.5MEDIUM
CVE-2019-16349
all versions
Bento4 1.5.1-628 has a NULL pointer dereference in AP4_ByteStream::ReadUI32 in Core/Ap4ByteStream.cpp when called from the AP4_Tru
5.5MEDIUM
CVE-2019-15050
all versions
An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in the AP4_AvccAtom class at Core/Ap4AvccAtom.cp
8.8HIGH
CVE-2019-15049
all versions
An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in the AP4_Dec3Atom class at Core/Ap4Dec3Atom.cp
8.8HIGH
CVE-2019-15048
all versions
An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer overflow in the AP4_RtpAtom class at Core/Ap4RtpAtom.cpp.
8.8HIGH
CVE-2019-15047
all versions
An issue was discovered in Bento4 1.5.1.0. There is a heap-based buffer over-read in the function AP4_BitReader::SkipBits at Core/
8.8HIGH
CVE-2019-13959
all versions
In Bento4 1.5.1-627, AP4_DataBuffer::SetDataSize does not handle reallocation failures, leading to a memory copy into a NULL point
6.5MEDIUM
CVE-2019-13238
all versions
An issue was discovered in Bento4 1.5.1.0. A memory allocation failure is unhandled in Core/Ap4SdpAtom.cpp and leads to crashes. W
7.5HIGH
CVE-2019-9544
all versions
An issue was discovered in Bento4 1.5.1-628. An out of bounds write occurs in AP4_CttsTableEntry::AP4_CttsTableEntry() located in
8.8HIGH
CVE-2019-8382
all versions
An issue was discovered in Bento4 1.5.1-628. A NULL pointer dereference occurs in the function AP4_List:Find located in Core/Ap4Li
8.8HIGH
CVE-2019-8380
all versions
An issue was discovered in Bento4 1.5.1-628. A NULL pointer dereference occurs in AP4_Track::GetSampleIndexForTimeStampMs() locate
8.8HIGH
CVE-2019-8378
all versions
An issue was discovered in Bento4 1.5.1-628. A heap-based buffer over-read exists in AP4_BitStream::ReadBytes() in Codecs/Ap4BitSt
8.8HIGH
CVE-2019-7699
all versions
A heap-based buffer over-read occurs in AP4_BitStream::WriteBytes in Codecs/Ap4BitStream.cpp in Bento4 v1.5.1-627. Remote attacker
6.5MEDIUM
CVE-2019-7698
all versions
An issue was discovered in AP4_Array<AP4_CttsTableEntry>::EnsureCapacity in Core/Ap4Array.h in Bento4 1.5.1-627. Crafted MP4 input
6.5MEDIUM
CVE-2019-7697
all versions
An issue was discovered in Bento4 v1.5.1-627. There is an assertion failure in AP4_AtomListWriter::Action in Core/Ap4Atom.cpp, lea
6.5MEDIUM
CVE-2019-6966
all versions
An issue was discovered in Bento4 1.5.1-628. The AP4_ElstAtom class in Core/Ap4ElstAtom.cpp has an attempted excessive memory allo
6.5MEDIUM
CVE-2019-6132
all versions
An issue was discovered in Bento4 v1.5.1-627. There is a memory leak in AP4_DescriptorFactory::CreateDescriptorFromStream in Core/
7.5HIGH
CVE-2018-20659
all versions
An issue was discovered in Bento4 1.5.1-627. The AP4_StcoAtom class in Core/Ap4StcoAtom.cpp has an attempted excessive memory allo
6.5MEDIUM
CVE-2018-20502
all versions
An issue was discovered in Bento4 1.5.1-627. There is an attempt at excessive memory allocation in the AP4_DataBuffer class when c
6.5MEDIUM
CVE-2018-20409
all versions
An issue was discovered in Bento4 1.5.1-627. There is a heap-based buffer over-read in AP4_AvccAtom::Create in Core/Ap4AvccAtom.cp
6.5MEDIUM
CVE-2018-20408
all versions
An issue was discovered in Bento4 1.5.1-627. There is a memory leak in AP4_StdcFileByteStream::Create in System/StdC/Ap4StdCFileBy
6.5MEDIUM
CVE-2018-20407
all versions
An issue was discovered in Bento4 1.5.1-627. There is a memory leak in AP4_DescriptorFactory::CreateDescriptorFromStream in Core/A
6.5MEDIUM
CVE-2018-20186
all versions
An issue was discovered in Bento4 1.5.1-627. AP4_Sample::ReadData in Core/Ap4Sample.cpp allows attackers to trigger an attempted e
6.5MEDIUM
CVE-2018-20095
all versions
An issue was discovered in EnsureCapacity in Core/Ap4Array.h in Bento4 1.5.1-627. Crafted MP4 input triggers an attempt at excessi
6.5MEDIUM
CVE-2018-14590
all versions
An issue has been discovered in Bento4 1.5.1-624. A SEGV can occur in AP4_Processor::ProcessFragments in Core/Ap4Processor.cpp.
7.5HIGH
CVE-2018-14589
all versions
An issue has been discovered in Bento4 1.5.1-624. AP4_Mp4AudioDsiParser::ReadBits in Codecs/Ap4Mp4AudioInfo.cpp has a heap-based b
8.8HIGH
CVE-2018-14588
all versions
An issue has been discovered in Bento4 1.5.1-624. A NULL pointer dereference can occur in AP4_DataBuffer::SetData in Core/Ap4DataB
7.5HIGH
CVE-2018-14587
all versions
An issue has been discovered in Bento4 1.5.1-624. AP4_MemoryByteStream::WritePartial in Core/Ap4ByteStream.cpp has a buffer over-r
8.8HIGH
CVE-2018-14586
all versions
An issue has been discovered in Bento4 1.5.1-624. A SEGV can occur in AP4_Mpeg2TsAudioSampleStream::WriteSample in Core/Ap4Mpeg2Ts
8.8HIGH
CVE-2018-14585
all versions
An issue has been discovered in Bento4 1.5.1-624. AP4_BytesToUInt16BE in Core/Ap4Utils.h has a heap-based buffer over-read after a
8.8HIGH
CVE-2018-14584
all versions
An issue has been discovered in Bento4 1.5.1-624. AP4_AvccAtom::Create in Core/Ap4AvccAtom.cpp has a heap-based buffer over-read.
8.8HIGH
CVE-2018-14545
all versions
There exists one invalid memory read bug in AP4_SampleDescription::GetType() in Ap4SampleDescription.h in Bento4 1.5.1-624, which
5.5MEDIUM
CVE-2018-14544
all versions
There exists one invalid memory read bug in AP4_SampleDescription::GetFormat() in Ap4SampleDescription.h in Bento4 1.5.1-624, whic
5.5MEDIUM
CVE-2018-14543
all versions
There exists one NULL pointer dereference vulnerability in AP4_JsonInspector::AddField in Ap4Atom.cpp in Bento4 1.5.1-624, which c
5.5MEDIUM
CVE-2018-14532
all versions
An issue was discovered in Bento4 1.5.1-624. There is a heap-based buffer over-read in AP4_Mpeg2TsVideoSampleStream::WriteSample i
9.8CRITICAL
CVE-2018-14531
all versions
An issue was discovered in Bento4 1.5.1-624. There is an unspecified "heap-buffer-overflow" crash in the AP4_HvccAtom class in Cor
9.8CRITICAL
CVE-2018-14445
all versions
In Bento4 v1.5.1-624, AP4_File::ParseStream in Ap4File.cpp allows remote attackers to cause a denial of service (infinite loop) vi
6.5MEDIUM
CVE-2018-13848
all versions
An issue has been found in Bento4 1.5.1-624. It is a SEGV in AP4_StszAtom::GetSampleSize in Core/Ap4StszAtom.cpp.
7.5HIGH
CVE-2018-13847
all versions
An issue has been found in Bento4 1.5.1-624. It is a SEGV in AP4_StcoAtom::AdjustChunkOffsets in Core/Ap4StcoAtom.cpp.
7.5HIGH
CVE-2018-13846
all versions
An issue has been found in Bento4 1.5.1-624. AP4_Mpeg2TsVideoSampleStream::WriteSample in Core/Ap4Mpeg2Ts.cpp has a heap-based buf
9.8CRITICAL
CVE-2018-5253
all versions
The AP4_FtypAtom class in Core/Ap4FtypAtom.cpp in Bento4 1.5.1.0 has an Infinite loop via a crafted MP4 file that triggers size mi
7.8HIGH
CVE-2017-14647
all versions
A heap-based buffer overflow was discovered in AP4_VisualSampleEntry::ReadFields in Core/Ap4SampleEntry.cpp in Bento4 1.5.0-617. T
8.8HIGH
CVE-2017-14646
all versions
The AP4_AvccAtom and AP4_HvccAtom classes in Bento4 version 1.5.0-617 do not properly validate data sizes, leading to a heap-based
7.5HIGH
CVE-2017-14645
all versions
A heap-based buffer over-read was discovered in AP4_BitStream::ReadBytes in Codecs/Ap4BitStream.cpp in Bento4 version 1.5.0-617. T
6.5MEDIUM
CVE-2017-14644
all versions
A heap-based buffer overflow was discovered in the AP4_HdlrAtom class in Bento4 1.5.0-617. The vulnerability causes an out-of-boun
8.8HIGH
CVE-2017-14643
all versions
The AP4_HdlrAtom class in Core/Ap4HdlrAtom.cpp in Bento4 version 1.5.0-617 uses an incorrect character data type, leading to a hea
6.5MEDIUM
CVE-2017-14642
all versions
A NULL pointer dereference was discovered in the AP4_HdlrAtom class in Bento4 version 1.5.0-617. The vulnerability causes a segmen
6.5MEDIUM
CVE-2017-14641
all versions
A NULL pointer dereference was discovered in the AP4_DataAtom class in MetaData/Ap4MetaData.cpp in Bento4 version 1.5.0-617. The v
6.5MEDIUM
CVE-2017-14640
all versions
A NULL pointer dereference was discovered in AP4_AtomSampleTable::GetSample in Core/Ap4AtomSampleTable.cpp in Bento4 version 1.5.0
6.5MEDIUM
CVE-2017-14639
all versions
AP4_VisualSampleEntry::ReadFields in Core/Ap4SampleEntry.cpp in Bento4 1.5.0-617 uses incorrect character data types, which causes
8.8HIGH
CVE-2017-14638
all versions
AP4_AtomFactory::CreateAtomFromStream in Core/Ap4AtomFactory.cpp in Bento4 version 1.5.0-617 has missing NULL checks, leading to a
6.5MEDIUM
CVE-2017-14261
all versions
In the SDK in Bento4 1.5.0-616, the AP4_StszAtom class in Ap4StszAtom.cpp file contains a Read Memory Access Violation vulnerabili
7.8HIGH
CVE-2017-14260
all versions
In the SDK in Bento4 1.5.0-616, the AP4_StssAtom class in Ap4StssAtom.cpp contains a Write Memory Access Violation vulnerability.
7.8HIGH
CVE-2017-14259
all versions
In the SDK in Bento4 1.5.0-616, the AP4_StscAtom class in Ap4StscAtom.cpp contains a Write Memory Access Violation vulnerability.
7.8HIGH
CVE-2017-14258
all versions
In the SDK in Bento4 1.5.0-616, SetItemCount in Core/Ap4StscAtom.h file contains a Write Memory Access Violation vulnerability. It
7.8HIGH
CVE-2017-14257
all versions
In the SDK in Bento4 1.5.0-616, AP4_AtomSampleTable::GetSample in Core/Ap4AtomSampleTable.cpp contains a Read Memory Access Violat
7.8HIGH
CVE-2017-12476
<= 1.5.0-615
The AP4_AvccAtom::InspectFields function in Core/Ap4AvccAtom.cpp in Bento4 mp4dump before 1.5.0-616 allows remote attackers to cau
5.5MEDIUM
CVE-2017-12475
<= 1.5.0-615
The AP4_Processor::Process function in Core/Ap4Processor.cpp in Bento4 mp4encrypt before 1.5.0-616 allows remote attackers to caus
5.5MEDIUM
CVE-2017-12474
<= 1.5.0-615
The AP4_AtomSampleTable::GetSample function in Core/Ap4AtomSampleTable.cpp in Bento4 mp42ts before 1.5.0-616 allows remote attacke
5.5MEDIUM
threatengine.sh