CVE-2022-43038: Medium severity Axiosys Bento4 vulnerability
Published Oct 19, 2022
·Updated
Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4BitReader::ReadCache() function in mp42ts.
Affected Software
1 affected component
Axiosys Bento4=1.6.0-639
Event History
Oct 19, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of this issue?
The vulnerability ID of this issue is CVE-2022-43038.
2
What is the affected software?
The affected software is Axiosys Bento4 v1.6.0-639.
3
What is the severity of CVE-2022-43038?
The severity of CVE-2022-43038 is medium (CVSS score of 6.5).
4
How does CVE-2022-43038 affect Axiosys Bento4?
CVE-2022-43038 affects Axiosys Bento4 v1.6.0-639 through a heap overflow in the AP4_BitReader::ReadCache() function in mp42ts.
5
Is there a fix available for CVE-2022-43038?
Currently there is no fix available for CVE-2022-43038. It is recommended to follow the vendor's advisory for updates or patches.