Filtered by vendor Axiosys
Subscribe
Total
116 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2022-3974 | 1 Axiosys | 1 Bento4 | 2024-02-04 | N/A | 8.8 HIGH |
A vulnerability classified as critical was found in Axiomatic Bento4. Affected by this vulnerability is the function AP4_StdcFileByteStream::ReadPartial of the file Ap4StdCFileByteStream.cpp of the component mp4info. The manipulation leads to heap-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-213553 was assigned to this vulnerability. | |||||
CVE-2022-3809 | 1 Axiosys | 1 Bento4 | 2024-02-04 | N/A | 6.5 MEDIUM |
A vulnerability was found in Axiomatic Bento4 and classified as problematic. Affected by this issue is the function ParseCommandLine of the file Mp4Tag/Mp4Tag.cpp of the component mp4tag. The manipulation leads to denial of service. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-212666 is the identifier assigned to this vulnerability. | |||||
CVE-2022-40884 | 1 Axiosys | 1 Bento4 | 2024-02-04 | N/A | 5.5 MEDIUM |
Bento4 1.6.0 has memory leaks via the mp4fragment. | |||||
CVE-2022-29017 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 4.3 MEDIUM | 5.5 MEDIUM |
Bento4 v1.6.0.0 was discovered to contain a segmentation fault via the component /x86_64/multiarch/strlen-avx2.S. | |||||
CVE-2022-31285 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 4.3 MEDIUM | 5.5 MEDIUM |
An issue was discovered in Bento4 1.2. The allocator is out of memory in /Source/C++/Core/Ap4Array.h. | |||||
CVE-2022-31287 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 4.3 MEDIUM | 5.5 MEDIUM |
An issue was discovered in Bento4 v1.2. There is an allocation size request error in /Ap4RtpAtom.cpp. | |||||
CVE-2021-40941 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 5.0 MEDIUM | 7.5 HIGH |
In Bento4 1.6.0-638, there is an allocator is out of memory in the function AP4_Array<AP4_TrunAtom::Entry>::EnsureCapacity in Ap4Array.h:172, as demonstrated by GPAC. This can cause a denial of service (DOS). | |||||
CVE-2021-40943 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 4.3 MEDIUM | 5.5 MEDIUM |
In Bento4 1.6.0-638, there is a null pointer reference in the function AP4_DescriptorListInspector::Action function in Ap4Descriptor.h:124 , as demonstrated by GPAC. This can cause a denial of service (DOS). | |||||
CVE-2022-27607 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 5.8 MEDIUM | 8.1 HIGH |
Bento4 1.6.0-639 has a heap-based buffer over-read in the AP4_HvccAtom class, a different issue than CVE-2018-14531. | |||||
CVE-2022-31282 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 4.3 MEDIUM | 5.5 MEDIUM |
Bento4 MP4Dump v1.2 was discovered to contain a segmentation violation via an unknown address at /Source/C++/Core/Ap4DataBuffer.cpp:175. | |||||
CVE-2021-32265 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 6.8 MEDIUM | 8.8 HIGH |
An issue was discovered in Bento4 through v1.6.0-637. A global-buffer-overflow exists in the function AP4_MemoryByteStream::WritePartial() located in Ap4ByteStream.cpp. It allows an attacker to cause code execution or information disclosure. | |||||
CVE-2020-19717 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
An unhandled memory allocation failure in Core/Ap48bdlAtom.cpp of Bento 1.5.1-628 causes a NULL pointer dereference, leading to a denial of service (DOS). | |||||
CVE-2020-19721 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
A heap buffer overflow vulnerability in Ap4TrunAtom.cpp of Bento 1.5.1-628 may lead to an out-of-bounds write while running mp42aac, leading to system crashes and a denial of service (DOS). | |||||
CVE-2021-35307 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
An issue was discovered in Bento4 through v1.6.0-636. A NULL pointer dereference exists in the AP4_DescriptorFinder::Test component located in /Core/Ap4Descriptor.h. It allows an attacker to cause a denial of service (DOS). | |||||
CVE-2020-23912 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 4.3 MEDIUM | 5.5 MEDIUM |
An issue was discovered in Bento4 through v1.6.0-637. A NULL pointer dereference exists in the function AP4_StszAtom::GetSampleSize() located in Ap4StszAtom.cpp. It allows an attacker to cause Denial of Service. | |||||
CVE-2020-19720 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
An unhandled memory allocation failure in Core/AP4IkmsAtom.cpp of Bento 1.5.1-628 causes a NULL pointer dereference, leading to a denial of service (DOS). | |||||
CVE-2018-10790 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 5.0 MEDIUM | 7.5 HIGH |
The AP4_CttsAtom class in Core/Ap4CttsAtom.cpp in Bento4 1.5.1.0 allows remote attackers to cause a denial of service (application crash), related to a memory allocation failure, as demonstrated by mp2aac. | |||||
CVE-2020-23334 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 5.0 MEDIUM | 7.5 HIGH |
A WRITE memory access in the AP4_NullTerminatedStringAtom::AP4_NullTerminatedStringAtom component of Bento4 version 06c39d9 can lead to a segmentation fault. | |||||
CVE-2020-19722 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
An unhandled memory allocation failure in Core/Ap4Atom.cpp of Bento 1.5.1-628 causes a direct copy to NULL pointer dereference, leading to a denial of service (DOS). | |||||
CVE-2020-21066 | 1 Axiosys | 1 Bento4 | 2024-02-04 | 4.3 MEDIUM | 6.5 MEDIUM |
An issue was discovered in Bento4 v1.5.1.0. There is a heap-buffer-overflow in AP4_Dec3Atom::AP4_Dec3Atom at Ap4Dec3Atom.cpp, leading to a denial of service (program crash), as demonstrated by mp42aac. |