Show filters
137 Total Results
Displaying 1-10 of 137
Sort by:
Attacker Value
Unknown

CVE-2024-24155

Disclosure Date: February 29, 2024 (last updated January 17, 2025)
Bento4 v1.5.1-628 contains a Memory leak on AP4_Movie::AP4_Movie, parsing tracks and added into m_Tracks list, but mp42aac cannot correctly delete when we got an no audio track found error. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted mp4 file.
Attacker Value
Unknown

CVE-2024-25454

Disclosure Date: February 09, 2024 (last updated February 13, 2024)
Bento4 v1.6.0-640 was discovered to contain a NULL pointer dereference via the AP4_DescriptorFinder::Test() function.
Attacker Value
Unknown

CVE-2024-25453

Disclosure Date: February 09, 2024 (last updated February 13, 2024)
Bento4 v1.6.0-640 was discovered to contain a NULL pointer dereference via the AP4_StszAtom::GetSampleSize() function.
Attacker Value
Unknown

CVE-2024-25452

Disclosure Date: February 09, 2024 (last updated February 13, 2024)
Bento4 v1.6.0-640 was discovered to contain an out-of-memory bug via the AP4_UrlAtom::AP4_UrlAtom() function.
Attacker Value
Unknown

CVE-2024-25451

Disclosure Date: February 09, 2024 (last updated February 13, 2024)
Bento4 v1.6.0-640 was discovered to contain an out-of-memory bug via the AP4_DataBuffer::ReallocateBuffer() function.
Attacker Value
Unknown

CVE-2023-38666

Disclosure Date: August 22, 2023 (last updated October 08, 2023)
Bento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_Processor::ProcessFragments function in mp4encrypt.
Attacker Value
Unknown

CVE-2023-29575

Disclosure Date: April 21, 2023 (last updated October 08, 2023)
Bento4 v1.6.0-639 was discovered to contain an out-of-memory bug in the mp42aac component.
Attacker Value
Unknown

CVE-2023-29573

Disclosure Date: April 13, 2023 (last updated October 08, 2023)
Bento4 v1.6.0-639 was discovered to contain an out-of-memory bug in the mp4info component.
Attacker Value
Unknown

CVE-2023-29574

Disclosure Date: April 12, 2023 (last updated October 08, 2023)
Bento4 v1.6.0-639 was discovered to contain an out-of-memory bug in the mp42avc component.
Attacker Value
Unknown

CVE-2023-29576

Disclosure Date: April 11, 2023 (last updated October 08, 2023)
Bento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_TrunAtom::SetDataOffset(int) function in Ap4TrunAtom.h.