CVE-2022-40775: Null Pointer Dereference
Published Sep 18, 2022
·Updated
An issue was discovered in Bento4 through 1.6.0-639. A NULL pointer dereference occurs in AP4StszAtom::WriteFields.
Affected Software
1 affected component
Axiosys Bento4<=1.6.0-639
Event History
Sep 18, 2022
CVE Published
via MITRE·06:11 PM
Data Sourced
via MITRE·06:11 PM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-40775?
CVE-2022-40775 is a vulnerability discovered in Bento4 through version 1.6.0-639. It involves a NULL pointer dereference in AP4_StszAtom::WriteFields.
2
How severe is CVE-2022-40775?
CVE-2022-40775 has a severity level of medium and a CVSS score of 5.5.
3
Which software versions are affected by CVE-2022-40775?
The vulnerability affects Axiosys Bento4 versions up to and including 1.6.0-639.
4
What is the Common Weakness Enumeration (CWE) ID associated with CVE-2022-40775?
The Common Weakness Enumeration (CWE) ID associated with CVE-2022-40775 is CWE-476.
5
Is there a fix available for CVE-2022-40775?
At the time of writing, there is no available fix for CVE-2022-40775. It is recommended to follow the issue tracker on the GitHub page of Bento4 for any updates.