CVE-2022-3665: Axiomatic Bento4 avcinfo AvcInfo.cpp heap-based overflow
A vulnerability classified as critical was found in Axiomatic Bento4. Affected by this vulnerability is an unknown functionality of the file AvcInfo.cpp of the component avcinfo. The manipulation leads to heap-based buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-212005 was assigned to this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-3665?
CVE-2022-3665 is a critical vulnerability found in Axiomatic Bento4 that allows for remote heap-based buffer overflow.
What is the severity of CVE-2022-3665?
CVE-2022-3665 is classified as high severity with a CVSS score of 7.8.
How does CVE-2022-3665 affect Axiomatic Bento4?
CVE-2022-3665 affects an unknown functionality in the AvcInfo.cpp file of the avcinfo component in Axiomatic Bento4.
Is CVE-2022-3665 exploitable remotely?
Yes, CVE-2022-3665 can be exploited remotely.
How can I fix CVE-2022-3665?
To fix CVE-2022-3665, it is recommended to update Axiomatic Bento4 to version 1.6.0-639 or apply any available patches or updates provided by the vendor.