Vulnerabilities > CVE-2019-13959 - NULL Pointer Dereference vulnerability in Axiosys Bento4 1.5.1627
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH Summary
In Bento4 1.5.1-627, AP4_DataBuffer::SetDataSize does not handle reallocation failures, leading to a memory copy into a NULL pointer. This is different from CVE-2018-20186.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |