CVE-2017-14642

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
21/09/2017
Last modified:
20/04/2025

Description

A NULL pointer dereference was discovered in the AP4_HdlrAtom class in Bento4 version 1.5.0-617. The vulnerability causes a segmentation fault and application crash in AP4_StdcFileByteStream::ReadPartial in System/StdC/Ap4StdCFileByteStream.cpp, which leads to remote denial of service.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:bento4:bento4:1.5.0-617:*:*:*:*:*:*:*