CVE-2022-41845: Medium severity Axiosys Bento4 vulnerability
Published Sep 30, 2022
·Updated
An issue was discovered in Bento4 1.6.0-639. There ie excessive memory consumption in the function AP4Array<AP4ElstEntry>::EnsureCapacity in Core/Ap4Array.h.
Affected Software
1 affected component
Axiosys Bento4=1.6.0-639
Event History
Sep 30, 2022
CVE Published
via MITRE·04:42 AM
Data Sourced
via MITRE·04:42 AM
Description
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-41845?
The severity of CVE-2022-41845 is medium with a severity value of 5.5.
2
What is the affected software for CVE-2022-41845?
The affected software for CVE-2022-41845 is Axiosys Bento4 version 1.6.0-639.
3
How does CVE-2022-41845 manifest?
CVE-2022-41845 manifests as excessive memory consumption in the AP4_Array<AP4_ElstEntry>::EnsureCapacity function in Core/Ap4Array.h.
4
Are there any references available for CVE-2022-41845?
Yes, you can find references for CVE-2022-41845 at the following links: [link1](https://github.com/axiomatic-systems/Bento4/issues/747) and [link2](https://github.com/axiomatic-systems/Bento4/issues/770).
5
What is the CWE ID for CVE-2022-41845?
The CWE ID for CVE-2022-41845 is 770.