CVE-2022-41426: Medium severity Axiosys Bento4 vulnerability
Published Oct 3, 2022
·Updated
Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4AtomFactory::CreateAtomFromStream function in mp4split.
Affected Software
1 affected component
Axiosys Bento4=1.6.0-639
Event History
Oct 3, 2022
CVE Published
via MITRE·01:51 PM
Data Sourced
via MITRE·01:51 PM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of Bento4?
The vulnerability ID of Bento4 is CVE-2022-41426.
2
What is the title of the vulnerability?
The title of the vulnerability is 'Bento4 v1.6.0-639 Memory Leak in AP4_AtomFactory::CreateAtomFromStream'.
3
What is the affected software version?
The affected software version is Bento4 v1.6.0-639.
4
What is the severity of CVE-2022-41426?
The severity of CVE-2022-41426 is medium with a CVSS score of 6.5.
5
How can I fix the memory leak vulnerability in Bento4?
To fix the memory leak vulnerability in Bento4, it is recommended to upgrade to a version that addresses the issue when available.