Vulnerabilities > Axiosys > Bento4 > Medium

DATE CVE VULNERABILITY TITLE RISK
2022-10-03 CVE-2022-41424 Memory Leak vulnerability in Axiosys Bento4 1.6.0639
Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_SttsAtom::Create function in mp42hls.
network
low complexity
axiosys CWE-401
6.5
2022-10-03 CVE-2022-41425 Unspecified vulnerability in Axiosys Bento4 1.6.0639
Bento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_Processor::ProcessFragments function in mp4decrypt.
network
low complexity
axiosys
6.5
2022-10-03 CVE-2022-41426 Memory Leak vulnerability in Axiosys Bento4 1.6.0639
Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_AtomFactory::CreateAtomFromStream function in mp4split.
network
low complexity
axiosys CWE-401
6.5
2022-10-03 CVE-2022-41427 Memory Leak vulnerability in Axiosys Bento4 1.6.0639
Bento4 v1.6.0-639 was discovered to contain a memory leak in the AP4_AvcFrameParser::Feed function in mp4mux.
network
low complexity
axiosys CWE-401
6.5
2022-09-30 CVE-2022-41841 NULL Pointer Dereference vulnerability in Axiosys Bento4
An issue was discovered in Bento4 through 1.6.0-639.
local
low complexity
axiosys CWE-476
5.5
2022-09-30 CVE-2022-41845 Allocation of Resources Without Limits or Throttling vulnerability in Axiosys Bento4 1.6.0639
An issue was discovered in Bento4 1.6.0-639.
local
low complexity
axiosys CWE-770
5.5
2022-09-30 CVE-2022-41846 Allocation of Resources Without Limits or Throttling vulnerability in Axiosys Bento4 1.6.0639
An issue was discovered in Bento4 1.6.0-639.
local
low complexity
axiosys CWE-770
5.5
2022-09-30 CVE-2022-41847 Memory Leak vulnerability in Axiosys Bento4 1.6.0639
An issue was discovered in Bento4 1.6.0-639.
local
low complexity
axiosys CWE-401
5.5
2022-09-15 CVE-2022-40736 Unspecified vulnerability in Axiosys Bento4 1.6.0639
An issue was discovered in Bento4 1.6.0-639.
network
low complexity
axiosys
6.5
2022-06-28 CVE-2021-40943 NULL Pointer Dereference vulnerability in Axiosys Bento4 1.6.0638
In Bento4 1.6.0-638, there is a null pointer reference in the function AP4_DescriptorListInspector::Action function in Ap4Descriptor.h:124 , as demonstrated by GPAC.
network
axiosys CWE-476
4.3