CVE-2024-25454: Null Pointer Dereference
Published Feb 9, 2024
·Updated
Bento4 v1.6.0-640 was discovered to contain a NULL pointer dereference via the AP4DescriptorFinder::Test() function.
Affected Software
1 affected component
Axiosys Bento4=1.6.0-640
Event History
Feb 9, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Sep 2, 56089
Event
via FIRST·11:38 AM
Frequently Asked Questions
1
What is the severity of CVE-2024-25454?
CVE-2024-25454 is classified as a high-severity vulnerability due to potential denial of service impacts.
2
How do I fix CVE-2024-25454?
To fix CVE-2024-25454, upgrade to the patched version of Bento4 that addresses the NULL pointer dereference issue.
3
What problems does CVE-2024-25454 cause?
CVE-2024-25454 may lead to application crashes or denial of service due to the NULL pointer dereference.
4
Who is affected by CVE-2024-25454?
Users of Bento4 version 1.6.0-640 are affected by CVE-2024-25454.
5
When was CVE-2024-25454 discovered?
CVE-2024-25454 was discovered in Bento4 v1.6.0-640, highlighting significant software vulnerability.