CVE-2017-14257: Buffer Overflow
Published Sep 11, 2017
·Updated
In the SDK in Bento4 1.5.0-616, AP4AtomSampleTable::GetSample in Core/Ap4AtomSampleTable.cpp contains a Read Memory Access Violation vulnerability. It is possible to exploit this vulnerability by opening a crafted .MP4 file.
Affected Software
1 affected component
Bento4 Bento4=1.5.0-616
Event History
Sep 11, 2017
CVE Published
via MITRE·09:00 AM
Data Sourced
via MITRE·09:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-14257?
CVE-2017-14257 has been classified as a high severity vulnerability due to the potential for exploitation through crafted MP4 files.
2
How do I fix CVE-2017-14257?
To fix CVE-2017-14257, update to a later version of Bento4 that addresses this vulnerability.
3
What types of files can exploit CVE-2017-14257?
CVE-2017-14257 can be exploited by opening specially crafted MP4 files.
4
Which version of Bento4 is affected by CVE-2017-14257?
Bento4 version 1.5.0-616 is the affected version regarding CVE-2017-14257.
5
What is the nature of the vulnerability in CVE-2017-14257?
CVE-2017-14257 involves a Read Memory Access Violation in the SDK, allowing potential exploitation.