CVE-2023-1451
Summary
| CVE | CVE-2023-1451 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-03-17 07:15:00 UTC |
| Updated | 2023-11-07 04:03:00 UTC |
| Description | A vulnerability was found in MP4v2 2.1.2. It has been classified as problematic. Affected is the function mp4v2::impl::MP4Track::GetSampleFileOffset of the file mp4track.cpp. The manipulation leads to denial of service. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-223296. |
Risk And Classification
Problem Types: CWE-404
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Mp4v2 Project | Mp4v2 | 2.1.2 | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| GitHub - RichTrouble/mp4v2_mp4track_poc | MISC | github.com | |
| Login required | MISC | vuldb.com | |
| mp4v2_mp4track_poc/id_000000,sig_08,src_001076,time_147809374,execs_155756872,op_havoc,rep_8 at main · RichTrouble/mp4v2_mp4track_poc · GitHub | MISC | github.com | |
| Login required | MISC | vuldb.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.