Bento4是一款用于读写MP4文件的开源的C++库。 Bento4存在安全漏洞,该漏洞源于存在基于堆的缓冲区溢出问题。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-3662 | 7.3 HIGH | Axiomatic Bento4 mp42hls Ap4Sample.h GetOffset use after free |
| CVE-2022-3664 | 7.3 HIGH | Axiomatic Bento4 avcinfo Ap4BitStream.cpp WriteBytes heap-based overflow |
| CVE-2022-3665 | 7.3 HIGH | Axiomatic Bento4 avcinfo AvcInfo.cpp heap-based overflow |
| CVE-2022-3666 | 7.3 HIGH | Axiomatic Bento4 mp42ts Ap4LinearReader.cpp Advance use after free |
| CVE-2022-3670 | 7.3 HIGH | Axiomatic Bento4 mp42hevc WriteSample heap-based overflow |
| CVE-2022-3663 | 5.3 MEDIUM | Axiomatic Bento4 MP4fragment Ap4StsdAtom.cpp AP4_StsdAtom null pointer dereference |
| CVE-2022-3668 | 5.3 MEDIUM | Axiomatic Bento4 mp4edit CreateAtomFromStream memory leak |
| CVE-2022-3669 | 5.3 MEDIUM | Axiomatic Bento4 mp4edit Create memory leak |
No comments yet