CVE-2021-40941: High severity bento4 vulnerability
Published Jun 27, 2022
·Updated
In Bento4 1.6.0-638, there is an allocator is out of memory in the function AP4Array<AP4TrunAtom::Entry>::EnsureCapacity in Ap4Array.h:172, as demonstrated by GPAC. This can cause a denial of service (DOS).
Affected Software
1 affected component
Axiosys Bento4=1.6.0-638
Event History
Jun 27, 2022
CVE Published
via MITRE·05:44 PM
Data Sourced
via MITRE·05:44 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-40941?
CVE-2021-40941 has been classified as a denial of service vulnerability.
2
How do I fix CVE-2021-40941?
To mitigate CVE-2021-40941, it is recommended to update to a patched version of Bento4.
3
What software versions are affected by CVE-2021-40941?
CVE-2021-40941 affects Bento4 version 1.6.0-638.
4
What type of vulnerability is CVE-2021-40941?
CVE-2021-40941 is a denial of service vulnerability caused by an out of memory condition.
5
What is the exploit impact of CVE-2021-40941?
The exploit impact of CVE-2021-40941 can lead to service interruption due to a denial of service.