First published: Tue Nov 01 2022(Updated: )
A vulnerability has been found in Axiomatic Bento4 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component mp4mux. The manipulation leads to memory leak. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-212683.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
Axiosys Bento4 | =1.6.0-639 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-3817 is medium.
CVE-2022-3817 affects an unknown functionality in the mp4mux component of Axiomatic Bento4 and can lead to a memory leak.
Yes, the attack exploiting CVE-2022-3817 can be launched remotely.
At the time of writing, there is no fix available for CVE-2022-3817. It is recommended to follow the vendor's security advisories for updates.
You can find more information about CVE-2022-3817 at the following references: [Reference 1](https://github.com/axiomatic-systems/Bento4/files/9727057/POC_mp4mux_1729452038.zip), [Reference 2](https://github.com/axiomatic-systems/Bento4/issues/792), [Reference 3](https://vuldb.com/?id=212683).