Vulnerabilities > Axiosys > High

DATE CVE VULNERABILITY TITLE RISK
2018-07-24 CVE-2018-14586 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Axiosys Bento4 1.5.1624
An issue has been discovered in Bento4 1.5.1-624.
network
low complexity
axiosys CWE-119
8.8
2018-07-24 CVE-2018-14585 Out-of-bounds Read vulnerability in Axiosys Bento4 1.5.1624
An issue has been discovered in Bento4 1.5.1-624.
network
low complexity
axiosys CWE-125
8.8
2018-07-24 CVE-2018-14584 Out-of-bounds Read vulnerability in Axiosys Bento4 1.5.1624
An issue has been discovered in Bento4 1.5.1-624.
network
low complexity
axiosys CWE-125
8.8
2018-07-10 CVE-2018-13848 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Axiosys Bento4 1.5.1624
An issue has been found in Bento4 1.5.1-624.
network
low complexity
axiosys CWE-119
7.5
2018-07-10 CVE-2018-13847 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Axiosys Bento4 1.5.1624
An issue has been found in Bento4 1.5.1-624.
network
low complexity
axiosys CWE-119
7.5
2018-01-05 CVE-2018-5253 Infinite Loop vulnerability in Axiosys Bento4 1.5.1.0
The AP4_FtypAtom class in Core/Ap4FtypAtom.cpp in Bento4 1.5.1.0 has an Infinite loop via a crafted MP4 file that triggers size mishandling.
local
low complexity
axiosys CWE-835
7.8
2017-09-21 CVE-2017-14646 Out-of-bounds Read vulnerability in Axiosys Bento4 1.5.0617
The AP4_AvccAtom and AP4_HvccAtom classes in Bento4 version 1.5.0-617 do not properly validate data sizes, leading to a heap-based buffer over-read and application crash in AP4_DataBuffer::SetData in Core/Ap4DataBuffer.cpp.
network
low complexity
axiosys CWE-125
7.5
2017-09-11 CVE-2017-14260 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Axiosys Bento4 1.5.0616
In the SDK in Bento4 1.5.0-616, the AP4_StssAtom class in Ap4StssAtom.cpp contains a Write Memory Access Violation vulnerability.
local
low complexity
axiosys CWE-119
7.8