A heap-based buffer over-read occurs in AP4_BitStream::WriteBytes in Codecs/Ap4BitStream.cpp in Bento4 v1.5.1-627. Remote attackers could leverage this vulnerability to cause an exception via crafted mp4 input, which leads to a denial of service.
References
Link | Resource |
---|---|
https://github.com/axiomatic-systems/Bento4/issues/355 | Exploit Third Party Advisory |
Configurations
Information
Published : 2019-02-10 14:29
Updated : 2020-08-24 10:37
NVD link : CVE-2019-7699
Mitre link : CVE-2019-7699
JSON object : View
CWE
CWE-125
Out-of-bounds Read
Products Affected
axiosys
- bento4