CVE-2018-10790: High severity bento4 vulnerability
The AP4CttsAtom class in Core/Ap4CttsAtom.cpp in Bento4 1.5.1.0 allows remote attackers to cause a denial of service (application crash), related to a memory allocation failure, as demonstrated by mp2aac.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-10790?
CVE-2018-10790 is classified as a medium severity vulnerability due to its potential to cause a denial of service through application crashes.
How does CVE-2018-10790 affect Bento4 1.5.1.0?
CVE-2018-10790 allows remote attackers to cause a denial of service in Bento4 1.5.1.0 by exploiting a memory allocation failure.
How do I fix CVE-2018-10790?
To fix CVE-2018-10790, users should upgrade to a newer version of Bento4 that addresses this vulnerability.
What kind of attacks can CVE-2018-10790 facilitate?
CVE-2018-10790 can facilitate denial of service attacks leading to application crashes, impacting service availability.
Is CVE-2018-10790 a local or remote vulnerability?
CVE-2018-10790 is a remote vulnerability, allowing attackers to exploit it without physical access to the system.