← back
CVE-2022-3814

Axiomatic Bento4 mp4decrypt memory leak

CVSS 4.3 MEDIUMEPSS 0.8%CWE-404
Vexday Risk Score
13Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS 4.3EPSS 0.8%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
01 Nov 2022Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A vulnerability classified as problematic was found in Axiomatic Bento4. This vulnerability affects unknown code of the component mp4decrypt. The manipulation leads to memory leak. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-212680.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
Affected products
Axiomatic · Bento4

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →