First published: Wed Oct 19 2022(Updated: )
An issue was discovered in Bento4 v1.6.0-639. There is a heap buffer overflow vulnerability in the AP4_BitReader::SkipBits(unsigned int) function in mp42ts.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Axiosys Bento4 | =1.6.0-639 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2022-43034.
The affected software version is Bento4 v1.6.0-639.
The severity of CVE-2022-43034 is medium with a CVSS score of 6.5.
CVE-2022-43034 is a heap buffer overflow vulnerability in the AP4_BitReader::SkipBits(unsigned int) function in mp42ts in Bento4 v1.6.0-639.
To fix this vulnerability, update Bento4 to a version that is not affected by CVE-2022-43034.