CVE-2024-25453: Null Pointer Dereference
Published Feb 9, 2024
·Updated
Bento4 v1.6.0-640 was discovered to contain a NULL pointer dereference via the AP4StszAtom::GetSampleSize() function.
Affected Software
1 affected component
Axiosys Bento4=1.6.0-640
Event History
Feb 9, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-25453?
CVE-2024-25453 has a medium severity rating due to the impact of a NULL pointer dereference.
2
How do I fix CVE-2024-25453?
To fix CVE-2024-25453, upgrade to a patched version of Bento4 that addresses the NULL pointer dereference issue.
3
What impact does CVE-2024-25453 have on affected systems?
CVE-2024-25453 can lead to application crashes and denial of service in systems running the vulnerable version of Bento4.
4
Which versions of Bento4 are affected by CVE-2024-25453?
Bento4 version 1.6.0-640 is affected by CVE-2024-25453 and may require immediate attention.
5
Is CVE-2024-25453 being actively exploited in the wild?
As of now, there is no public information indicating that CVE-2024-25453 is being actively exploited in the wild.