First published: Thu Jul 04 2019(Updated: )
An issue was discovered in Bento4 1.5.1.0. A memory allocation failure is unhandled in Core/Ap4SdpAtom.cpp and leads to crashes. When parsing input video, the program allocates a new buffer to parse an atom in the stream. The unhandled memory allocation failure causes a direct copy to a NULL pointer.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Axiosys Bento4 | =1.5.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-13238 is a vulnerability discovered in Bento4 version 1.5.1.0 that allows for memory allocation failures in the program, leading to crashes.
CVE-2019-13238 has a severity rating of 7.5 out of 10, indicating a high severity.
CVE-2019-13238 affects Axiosys Bento4 version 1.5.1.0, causing memory allocation failures that can lead to crashes.
At this time, there is no known fix for CVE-2019-13238. It is recommended to update to a newer version of Bento4 if available or to apply any patches or fixes provided by the vendor.
You can find more information about CVE-2019-13238 on the GitHub link provided: https://github.com/axiomatic-systems/Bento4/issues/396