CVE-2022-3809

medium

Description

A vulnerability was found in Axiomatic Bento4 and classified as problematic. Affected by this issue is the function ParseCommandLine of the file Mp4Tag/Mp4Tag.cpp of the component mp4tag. The manipulation leads to denial of service. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-212666 is the identifier assigned to this vulnerability.

References

https://vuldb.com/?id.212666

https://github.com/axiomatic-systems/Bento4/issues/779

https://github.com/axiomatic-systems/Bento4/files/9653209/poc_Bento4.zip

Details

Source: Mitre, NVD

Published: 2022-11-02

Updated: 2022-11-03

Risk Information

CVSS v2

Base Score: 7.8

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:C

Severity: High

CVSS v3

Base Score: 6.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

Severity: Medium