CVE-2022-35165: Medium severity bento4 vulnerability
Published Aug 18, 2022
·Updated
An issue in AP4SgpdAtom::AP4SgpdAtom() of Bento4-1.6.0-639 allows attackers to cause a Denial of Service (DoS) via a crafted mp4 input.
Affected Software
1 affected component
Axiosys Bento4=1.6.0-639
Event History
Aug 18, 2022
CVE Published
via MITRE·04:49 AM
Data Sourced
via MITRE·04:49 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2022-35165?
CVE-2022-35165 has been classified with a severity rating that indicates it can lead to Denial of Service.
2
How does CVE-2022-35165 affect Bento4 version 1.6.0-639?
CVE-2022-35165 affects Bento4 version 1.6.0-639 by allowing attackers to exploit a crafted mp4 input to cause a Denial of Service.
3
What types of attacks can CVE-2022-35165 facilitate?
CVE-2022-35165 can facilitate Denial of Service attacks through specially crafted media files.
4
What is the best way to protect against CVE-2022-35165?
To protect against CVE-2022-35165, users should upgrade to a patched version of Bento4 that addresses this vulnerability.
5
Is CVE-2022-35165 relevant for applications using Bento4?
Yes, CVE-2022-35165 is relevant for any application using Bento4 version 1.6.0-639, as it poses a risk of service disruption.