#VU38219 NULL pointer dereference in Bento4 - CVE-2017-14641
Published: September 21, 2017 / Updated: August 8, 2020
Bento4
axiomatic-systems
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a NULL pointer dereference error in the AP4_DataAtom class in MetaData/Ap4MetaData.cpp in Bento4 version 1.5.0-617. The vulnerability causes a segmentation fault and application crash, which leads to remote denial of service. A remote attacker can perform a denial of service (DoS) attack.