First published: Fri Jan 25 2019(Updated: )
An issue was discovered in Bento4 1.5.1-628. The AP4_ElstAtom class in Core/Ap4ElstAtom.cpp has an attempted excessive memory allocation related to AP4_Array<AP4_ElstEntry>::EnsureCapacity in Core/Ap4Array.h, as demonstrated by mp42hls.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Bento4 | =1.5.1-628 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-6966 is classified as a moderate severity vulnerability due to potential denial of service resulting from excessive memory allocation.
To fix CVE-2019-6966, update Bento4 to version 1.5.1-629 or later, which addresses the excessive memory allocation issue.
CVE-2019-6966 affects Bento4 version 1.5.1-628 specifically.
The impact of CVE-2019-6966 can lead to application crashes or denial of service due to memory allocation failures.
CVE-2019-6966 was discovered through code analysis related to the AP4_ElstAtom class in Bento4.