CVE-2022-3663: Axiomatic Bento4 MP4fragment Ap4StsdAtom.cpp AP4_StsdAtom null pointer dereference
A vulnerability was found in Axiomatic Bento4. It has been rated as problematic. This issue affects the function AP4StsdAtom of the file Ap4StsdAtom.cpp of the component MP4fragment. The manipulation leads to null pointer dereference. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-212003.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-3663?
CVE-2022-3663 has a severity rating of medium (5.5).
How does CVE-2022-3663 affect Axiomatic Bento4?
CVE-2022-3663 affects the function AP4_StsdAtom in the file Ap4StsdAtom.cpp of the MP4fragment component in Axiomatic Bento4.
How can CVE-2022-3663 be exploited?
CVE-2022-3663 can be exploited remotely by initiating the attack.
Is there a fix available for CVE-2022-3663?
Yes, a fix for CVE-2022-3663 is available. Please refer to the references for more information.
What is the Common Weakness Enumeration (CWE) ID for CVE-2022-3663?
CVE-2022-3663 is associated with CWE-476 (NULL Pointer Dereference) and CWE-404 (Improper Resource Shutdown or Release).