Axiomatic Bento4 mp4edit ସେବା ପ୍ରତ୍ୟାଖ୍ୟାନ

Rakkoon nageenyaa kan ସମସ୍ୟାଜନକ jedhamuun beekamu Axiomatic Bento4 keessatti argameera. Kan miidhamte is hojii hin beekamne kutaa mp4edit keessa. Hojii jijjiirraa gara ସେବା ପ୍ରତ୍ୟାଖ୍ୟାନ geessa. CWE fayyadamuun rakkoo ibsuun gara CWE-401 geessa. Dadhabbii kana yeroo 11/01/2022 maxxanfameera akka 792. Odeeffannoon kun buufachuuf github.com irratti qoodameera. Dogoggorri kun akka CVE-2022-3813tti beekama. Yaaliin weeraraa fageenya irraa jalqabamuu ni danda'a. Faayidaaleen teeknikaa hin jiru. Waliigalatti, meeshaa balaa kana fayyadamuuf jiru. Qorannoo miidhaa (exploit) uummataaf ifoomameera fi fayyadamamuu danda'a. Amma, gatii ammee exploit might be approx. USD $0-$5k ta'uu danda'a. Akka ପ୍ରୁଫ୍-ଅଫ୍-କନ୍ସେପ୍ଟ jedhamee ibsameera. Carraa exploit kana github.com irraa buufachuun ni danda'ama. Akka 0-daytti, gatii daldalaa dhoksaa tilmaamame $0-$5k ta'ee ture. Statistical analysis made it clear that VulDB provides the best quality for vulnerability data.

2 ଆଡାପ୍ଟେସନ୍ · 44 ପଏଣ୍ଟ

ଫିଲ୍ଡସୃଷ୍ଟି ହୋଇଛି
11/01/2022 11:04 PM
ଅଦ୍ୟତନ 1/1
11/30/2022 10:23 PM
software_vendorAxiomaticAxiomatic
software_nameBento4Bento4
software_componentmp4editmp4edit
vulnerability_cweCWE-401 (ସେବା ପ୍ରତ୍ୟାଖ୍ୟାନ)CWE-401 (ସେବା ପ୍ରତ୍ୟାଖ୍ୟାନ)
vulnerability_risk11
cvss3_vuldb_avNN
cvss3_vuldb_acLL
cvss3_vuldb_prNN
cvss3_vuldb_uiRR
cvss3_vuldb_sUU
cvss3_vuldb_cNN
cvss3_vuldb_iNN
cvss3_vuldb_aLL
cvss3_vuldb_ePP
cvss3_vuldb_rcRR
advisory_identifier792792
advisory_urlhttps://github.com/axiomatic-systems/Bento4/issues/792https://github.com/axiomatic-systems/Bento4/issues/792
exploit_availability11
exploit_publicity11
exploit_urlhttps://github.com/axiomatic-systems/Bento4/files/9726974/POC_mp4edit_728838793.ziphttps://github.com/axiomatic-systems/Bento4/files/9726974/POC_mp4edit_728838793.zip
source_cveCVE-2022-3813CVE-2022-3813
cna_responsibleVulDBVulDB
advisory_date1667257200 (11/01/2022)1667257200 (11/01/2022)
software_typeMultimedia Player SoftwareMultimedia Player Software
cvss2_vuldb_avNN
cvss2_vuldb_acLL
cvss2_vuldb_auNN
cvss2_vuldb_ciNN
cvss2_vuldb_iiNN
cvss2_vuldb_aiPP
cvss2_vuldb_ePOCPOC
cvss2_vuldb_rcURUR
cvss2_vuldb_rlNDND
cvss3_vuldb_rlXX
cvss2_vuldb_basescore5.05.0
cvss2_vuldb_tempscore4.34.3
cvss3_vuldb_basescore4.34.3
cvss3_vuldb_tempscore3.93.9
cvss3_meta_basescore4.34.3
cvss3_meta_tempscore3.93.9
price_0day$0-$5k$0-$5k
cve_assigned1667257200 (11/01/2022)
cve_nvd_summaryA vulnerability classified as problematic has been found in Axiomatic Bento4. This affects an unknown part of the component mp4edit. The manipulation leads to memory leak. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-212679.

Are you interested in using VulDB?

Download the whitepaper to learn more about our service!