CVE-2018-14586: Buffer Overflow
Published Jul 24, 2018
·Updated
An issue has been discovered in Bento4 1.5.1-624. A SEGV can occur in AP4Mpeg2TsAudioSampleStream::WriteSample in Core/Ap4Mpeg2Ts.cpp, a different vulnerability than CVE-2018-14532.
Affected Software
1 affected component
Axiosys Bento4=1.5.1-624
Event History
Jul 24, 2018
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2018-14586?
CVE-2018-14586 is classified as a medium severity vulnerability.
2
How do I fix CVE-2018-14586?
To fix CVE-2018-14586, upgrade Bento4 to version 1.5.1-625 or later.
3
What kind of impact does CVE-2018-14586 have?
CVE-2018-14586 can lead to a segmentation fault that may allow an attacker to crash the application.
4
In which versions of Bento4 is CVE-2018-14586 found?
CVE-2018-14586 is found in Bento4 version 1.5.1-624.
5
What component of Bento4 does CVE-2018-14586 affect?
CVE-2018-14586 affects the AP4_Mpeg2TsAudioSampleStream::WriteSample component in Bento4.