CVE-2022-3810
Published on: Not Yet Published
Last Modified on: 11/03/2022 05:15:00 PM UTC
Certain versions of Bento4 from Axiosys contain the following vulnerability:
A vulnerability was found in Axiomatic Bento4. It has been classified as problematic. This affects the function AP4_File::AP4_File of the file Mp42Hevc.cpp of the component mp42hevc. The manipulation leads to denial of service. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-212667.
- CVE-2022-3810 has been assigned by
[email protected] to track the vulnerability - currently rated as MEDIUM severity.
- Affected Vendor/Software:
Axiomatic - Bento4 version n/a
CVSS3 Score: 6.5 - MEDIUM
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
---|---|---|---|
NETWORK | LOW | NONE | REQUIRED |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
UNCHANGED | NONE | NONE | HIGH |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
CVE-2022-3810 | Axiomatic Bento4 mp42hevc Mp42Hevc.cpp AP4_File denial of service | vuldb.com text/html |
![]() |
There are some vulnerabilities in Bento4 · Issue #779 · axiomatic-systems/Bento4 · GitHub | github.com text/html |
![]() |
github.com application/zip |
![]() |
There are currently no QIDs associated with this CVE
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Application | Axiosys | Bento4 | All | All | All | All |
- cpe:2.3:a:axiosys:bento4:*:*:*:*:*:*:*:*:
No vendor comments have been submitted for this CVE
Social Mentions
Source | Title | Posted (UTC) |
---|---|---|
![]() |
CVE-2022-3810 | 2022-11-01 22:38:53 |