CVE-2017-14641: Null Pointer Dereference
Published Sep 21, 2017
·Updated
A NULL pointer dereference was discovered in the AP4DataAtom class in MetaData/Ap4MetaData.cpp in Bento4 version 1.5.0-617. The vulnerability causes a segmentation fault and application crash, which leads to remote denial of service.
Affected Software
1 affected component
Bento4 Bento4=1.5.0-617
Remediation
Event History
Sep 21, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-14641?
CVE-2017-14641 is classified as a denial of service vulnerability.
2
How do I fix CVE-2017-14641?
To fix CVE-2017-14641, update Bento4 to a version higher than 1.5.0-617.
3
What software is affected by CVE-2017-14641?
CVE-2017-14641 affects Bento4 version 1.5.0-617.
4
What happens if CVE-2017-14641 is exploited?
Exploitation of CVE-2017-14641 can lead to a segmentation fault and application crash.
5
Can CVE-2017-14641 be exploited remotely?
Yes, CVE-2017-14641 can be exploited to cause a remote denial of service.