Vulnerability index

Browse CVEs

155 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Bento4 HIGH 8.8
CVE-2022-41428

Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_BitReader::ReadBits function in mp4mux.

No fix yet
Fix from $1,950 2022-10-03
Bento4 MEDIUM 6.5
CVE-2022-41427

Bento4 v1.6.0-639 was discovered to contain a memory leak in the AP4_AvcFrameParser::Feed function in mp4mux.

No fix yet
Fix from $1,600 2022-10-03
Bento4 MEDIUM 6.5
CVE-2022-41424

Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_SttsAtom::Create function in mp42hls.

No fix yet
Fix from $1,600 2022-10-03
Bento4 MEDIUM 6.5
CVE-2022-41425

Bento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_Processor::ProcessFragments function in mp4decrypt.

No fix yet
Fix from $1,600 2022-10-03
Bento4 MEDIUM 6.5
CVE-2022-41426

Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_AtomFactory::CreateAtomFromStream function in mp4split.

No fix yet
Fix from $1,600 2022-10-03
Bento4 MEDIUM 6.5
CVE-2022-41419

Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_Processor::Process function in the mp4encrypt binary.

No fix yet
Fix from $1,600 2022-10-03
Bento4 MEDIUM 6.5
CVE-2022-41423

Bento4 v1.6.0-639 was discovered to contain a segmentation violation in the mp4fragment component.

No fix yet
Fix from $1,600 2022-10-03
Bento4 MEDIUM 5.5
CVE-2022-41841

An issue was discovered in Bento4 through 1.6.0-639. A NULL pointer dereference occurs in AP4_File::ParseStream in Core/Ap4File.cpp, which is called …

Fix: after 1.6.0-639
Fix from $1,600 2022-09-30
Bento4 MEDIUM 5.5
CVE-2022-41845

An issue was discovered in Bento4 1.6.0-639. There ie excessive memory consumption in the function AP4_Array<AP4_ElstEntry>::EnsureCapacity in Core/A…

No fix yet
Fix from $1,600 2022-09-30
Bento4 MEDIUM 5.5
CVE-2022-41846

An issue was discovered in Bento4 1.6.0-639. There ie excessive memory consumption in the function AP4_DataBuffer::ReallocateBuffer in Core/Ap4DataBu…

No fix yet
Fix from $1,600 2022-09-30
Bento4 MEDIUM 5.5
CVE-2022-41847

An issue was discovered in Bento4 1.6.0-639. A memory leak exists in AP4_StdcFileByteStream::Create(AP4_FileByteStream*, char const*, AP4_FileByteStr…

No fix yet
Fix from $1,600 2022-09-30
Bento4 MEDIUM 5.5
CVE-2022-40774

An issue was discovered in Bento4 through 1.6.0-639. There is a NULL pointer dereference in AP4_StszAtom::GetSampleSize.

Fix: after 1.6.0-639
Fix from $1,600 2022-09-18
Bento4 MEDIUM 5.5
CVE-2022-40775

An issue was discovered in Bento4 through 1.6.0-639. A NULL pointer dereference occurs in AP4_StszAtom::WriteFields.

Fix: after 1.6.0-639
Fix from $1,600 2022-09-18
Bento4 MEDIUM 6.5
CVE-2022-40736

An issue was discovered in Bento4 1.6.0-639. There ie excessive memory consumption in AP4_CttsAtom::Create in Core/Ap4CttsAtom.cpp.

No fix yet
Fix from $1,600 2022-09-15
Bento4 MEDIUM 6.5
CVE-2022-40737

An issue was discovered in Bento4 through 1.6.0-639. A buffer over-read exists in the function AP4_StdcFileByteStream::WritePartial located in System…

Fix: after 1.6.0-639
Fix from $1,600 2022-09-15
Bento4 MEDIUM 6.5
CVE-2022-40738

An issue was discovered in Bento4 through 1.6.0-639. A NULL pointer dereference occurs in AP4_DescriptorListWriter::Action in Core/Ap4Descriptor.h, c…

Fix: after 1.6.0-639
Fix from $1,600 2022-09-15
Bento4 MEDIUM 6.5
CVE-2022-40438

Buffer overflow vulnerability in function AP4_MemoryByteStream::WritePartial in mp42aac in Bento4 v1.6.0-639, allows attackers to cause a denial of s…

No fix yet
Fix from $1,600 2022-09-14
Bento4 MEDIUM 6.5
CVE-2022-40439

An memory leak issue was discovered in AP4_StdcFileByteStream::Create in mp42ts in Bento4 v1.6.0-639, allows attackers to cause a denial of service v…

No fix yet
Fix from $1,600 2022-09-14
Bento4 MEDIUM 5.5
CVE-2022-35165

An issue in AP4_SgpdAtom::AP4_SgpdAtom() of Bento4-1.6.0-639 allows attackers to cause a Denial of Service (DoS) via a crafted mp4 input.

No fix yet
Fix from $1,600 2022-08-18
Bento4 MEDIUM 5.5
CVE-2021-40943

In Bento4 1.6.0-638, there is a null pointer reference in the function AP4_DescriptorListInspector::Action function in Ap4Descriptor.h:124 , as demon…

No fix yet
Fix from $1,600 2022-06-28
Bento4 HIGH 7.5
CVE-2021-40941

In Bento4 1.6.0-638, there is an allocator is out of memory in the function AP4_Array<AP4_TrunAtom::Entry>::EnsureCapacity in Ap4Array.h:172, as demo…

No fix yet
Fix from $1,950 2022-06-27
Bento4 MEDIUM 5.5
CVE-2022-31282

Bento4 MP4Dump v1.2 was discovered to contain a segmentation violation via an unknown address at /Source/C++/Core/Ap4DataBuffer.cpp:175.

No fix yet
Fix from $1,600 2022-06-10
Bento4 MEDIUM 5.5
CVE-2022-31285

An issue was discovered in Bento4 1.2. The allocator is out of memory in /Source/C++/Core/Ap4Array.h.

No fix yet
Fix from $1,600 2022-06-10
Bento4 MEDIUM 5.5
CVE-2022-31287

An issue was discovered in Bento4 v1.2. There is an allocation size request error in /Ap4RtpAtom.cpp.

No fix yet
Fix from $1,600 2022-06-10
Bento4 MEDIUM 5.5
CVE-2022-29017

Bento4 v1.6.0.0 was discovered to contain a segmentation fault via the component /x86_64/multiarch/strlen-avx2.S.

Patch available
Fix from $1,600 2022-05-16
Bento4 HIGH 8.1
CVE-2022-27607

Bento4 1.6.0-639 has a heap-based buffer over-read in the AP4_HvccAtom class, a different issue than CVE-2018-14531.

No fix yet
Fix from $1,950 2022-03-21
Bento4 HIGH 8.8
CVE-2021-32265

An issue was discovered in Bento4 through v1.6.0-637. A global-buffer-overflow exists in the function AP4_MemoryByteStream::WritePartial() located in…

Fix: after 1.6.0-637
Fix from $1,950 2021-09-20
Bento4 HIGH 7.5
CVE-2018-10790

The AP4_CttsAtom class in Core/Ap4CttsAtom.cpp in Bento4 1.5.1.0 allows remote attackers to cause a denial of service (application crash), related to…

No fix yet
Fix from $1,950 2021-08-25
Bento4 HIGH 7.5
CVE-2020-23330

An issue was discovered in Bento4 version 06c39d9. A NULL pointer dereference exists in the AP4_Stz2Atom::GetSampleSize component located in /Core/Ap…

Fix: 1.6.0-635+
Fix from $1,950 2021-08-17
Bento4 HIGH 7.5
CVE-2020-23331

An issue was discovered in Bento4 version 06c39d9. A NULL pointer dereference exists in the AP4_DescriptorListWriter::Action component located in /Co…

No fix yet
Fix from $1,950 2021-08-17