CVE-2020-21066: Medium severity bento4 vulnerability
Published Aug 13, 2021
·Updated
An issue was discovered in Bento4 v1.5.1.0. There is a heap-buffer-overflow in AP4Dec3Atom::AP4Dec3Atom at Ap4Dec3Atom.cpp, leading to a denial of service (program crash), as demonstrated by mp42aac.
Affected Software
1 affected component
Axiosys Bento4=1.5.1.0
Event History
Aug 13, 2021
CVE Published
via MITRE·08:38 PM
Data Sourced
via MITRE·08:38 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2020-21066?
CVE-2020-21066 is classified as a high-severity vulnerability due to its potential to cause denial of service.
2
How do I fix CVE-2020-21066?
To fix CVE-2020-21066, it is recommended to update Bento4 to a version that addresses this heap-buffer-overflow issue.
3
What type of vulnerability is CVE-2020-21066?
CVE-2020-21066 is a heap-buffer overflow vulnerability found in the AP4_Dec3Atom constructor.
4
What impact does CVE-2020-21066 have on affected software?
CVE-2020-21066 can lead to a program crash, resulting in a denial of service for affected software.
5
Which version of Bento4 is affected by CVE-2020-21066?
CVE-2020-21066 affects Bento4 version 1.5.1.0.