First published: Mon Oct 03 2022(Updated: )
Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_Atom::TypeFromString function in mp4tag.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Axiosys Bento4 | =1.6.0-639 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-41429 is a vulnerability discovered in Bento4 v1.6.0-639, which allows for a heap overflow via the AP4_Atom::TypeFromString function in mp4tag.
The severity of CVE-2022-41429 is high with a CVSS score of 8.8.
CVE-2022-41429 impacts Axiosys Bento4 v1.6.0-639 by introducing a heap overflow vulnerability via the AP4_Atom::TypeFromString function in mp4tag.
Yes, a fix for CVE-2022-41429 can be found in the GitHub repository of Axiosys Bento4.
More information about CVE-2022-41429 can be found in the GitHub issue tracker for Axiosys Bento4.