CVE-2019-17528: High severity bento4 vulnerability
Published Oct 12, 2019
·Updated
An issue was discovered in Bento4 1.5.1.0. There is a SEGV in the function AP4TfhdAtom::SetDefaultSampleSize at Core/Ap4TfhdAtom.h when called from AP4Processor::ProcessFragments in Core/Ap4Processor.cpp.
Affected Software
1 affected component
Axiosys Bento4=1.5.1.0
Event History
Oct 12, 2019
CVE Published
via MITRE·07:21 PM
Data Sourced
via MITRE·07:21 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2019-17528?
CVE-2019-17528 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2019-17528?
To fix CVE-2019-17528, update to the latest version of Bento4 that addresses this issue.
3
What types of attacks are possible with CVE-2019-17528?
CVE-2019-17528 can lead to application crashes or denial of service attacks due to the segmentation fault.
4
Which software versions are affected by CVE-2019-17528?
The vulnerability affects Bento4 version 1.5.1.0.
5
Where does the CVE-2019-17528 vulnerability occur in the code?
CVE-2019-17528 occurs in the function AP4_TfhdAtom::SetDefaultSampleSize in Core/Ap4TfhdAtom.h.