CVE-2025-25944: Buffer Overflow
Buffer Overflow vulnerability in Bento4 v.1.6.0-641 allows a local attacker to execute arbitrary code via the Ap4RtpAtom.cpp, specifically in AP4RtpAtom::AP4RtpAtom, during the execution of mp4fragment with a crafted MP4 input file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-25944?
CVE-2025-25944 is classified as a critical vulnerability due to the potential for remote code execution.
How do I fix CVE-2025-25944?
To fix CVE-2025-25944, you should update to a patched version of Bento4 that addresses this buffer overflow issue.
Who is affected by CVE-2025-25944?
CVE-2025-25944 affects users of Bento4 versions prior to the fix release that addresses this buffer overflow vulnerability.
What are the potential impacts of CVE-2025-25944?
Exploitation of CVE-2025-25944 could allow an attacker to execute arbitrary code on the affected system.
Is there a workaround for CVE-2025-25944 until a fix is applied?
Currently, there are no effective workarounds for CVE-2025-25944, and the best measure is to promptly update to the latest version.