CVE-2022-41846: Medium severity Axiosys Bento4 vulnerability
Published Sep 30, 2022
·Updated
An issue was discovered in Bento4 1.6.0-639. There ie excessive memory consumption in the function AP4DataBuffer::ReallocateBuffer in Core/Ap4DataBuffer.cpp.
Affected Software
1 affected component
Axiosys Bento4=1.6.0-639
Event History
Sep 30, 2022
CVE Published
via MITRE·04:42 AM
Data Sourced
via MITRE·04:42 AM
Description
Data Sourced
via NVD·05:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2022-41846?
CVE-2022-41846 is an issue discovered in Bento4 1.6.0-639 that causes excessive memory consumption in a specific function.
2
What software is affected by CVE-2022-41846?
The vulnerability affects Axiosys Bento4 version 1.6.0-639.
3
What is the severity of CVE-2022-41846?
The severity of CVE-2022-41846 is medium with a CVSS score of 5.5.
4
How can I fix CVE-2022-41846?
To fix CVE-2022-41846, it is recommended to update Bento4 to a version that includes the necessary patch.
5
Where can I find more information about CVE-2022-41846?
Additional information about CVE-2022-41846 can be found in the following references: [GitHub Issue 342](https://github.com/axiomatic-systems/Bento4/issues/342) and [GitHub Issue 770](https://github.com/axiomatic-systems/Bento4/issues/770).