First published: Sun Sep 18 2022(Updated: )
An issue was discovered in Bento4 through 1.6.0-639. There is a NULL pointer dereference in AP4_StszAtom::GetSampleSize.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Axiosys Bento4 | <=1.6.0-639 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2022-40774 is medium, with a severity value of 5.5.
The affected software for CVE-2022-40774 is Axiosys Bento4 version 1.6.0-639.
CVE-2022-40774 is a NULL pointer dereference vulnerability in the AP4_StszAtom::GetSampleSize function of Axiosys Bento4.
To fix CVE-2022-40774, it is recommended to update Axiosys Bento4 to a version beyond 1.6.0-639 or apply any patches provided by the vendor.
More information about CVE-2022-40774 can be found at the following link: [https://github.com/axiomatic-systems/Bento4/issues/757]