First published: Mon Oct 03 2022(Updated: )
Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_BitReader::ReadBit function in mp4mux.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Axiosys Bento4 | =1.6.0-639 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-41430 is a vulnerability discovered in Bento4 v1.6.0-639 that allows a heap overflow through the AP4_BitReader::ReadBit function in mp4mux.
CVE-2022-41430 has a severity rating of 8.8 (high).
CVE-2022-41430 affects Bento4 v1.6.0-639.
To fix CVE-2022-41430, it is recommended to update Bento4 to a version that includes the necessary security patches.
More information about CVE-2022-41430 can be found at the following reference: [GitHub - Bento4 Issue #773](https://github.com/axiomatic-systems/Bento4/issues/773)