CVE-2025-0751: Axiomatic Bento4 mp42aac ReadBits heap-based overflow
Published Jan 27, 2025
·Updated
A vulnerability classified as critical has been found in Axiomatic Bento4 up to 1.6.0. This affects the function AP4BitReader::ReadBits of the component mp42aac. The manipulation leads to heap-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
Affected Software
2 affected components
Axiomatic Bento4<=1.6.0
Axiosys Bento4<=1.6.0
Event History
Jan 27, 2025
CVE Published
via MITRE·07:31 PM
Data Sourced
via MITRE·07:31 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-0751?
CVE-2025-0751 is classified as a critical severity vulnerability.
2
What component is affected by CVE-2025-0751?
CVE-2025-0751 affects the mp42aac component of Axiomatic Bento4.
3
What type of vulnerability is CVE-2025-0751?
CVE-2025-0751 is a heap-based buffer overflow vulnerability.
4
How can CVE-2025-0751 be exploited?
CVE-2025-0751 can be exploited remotely.
5
How do I fix CVE-2025-0751?
To fix CVE-2025-0751, update Axiomatic Bento4 to a version beyond 1.6.0.