CVE-2022-3662

Source
https://cve.org/CVERecord?id=CVE-2022-3662
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-3662.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-3662
Downstream
Published
2022-10-26T00:00:00Z
Modified
2026-07-15T01:49:08.949101380Z
Severity
  • 7.3 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L CVSS Calculator
Summary
Axiomatic Bento4 mp42hls Ap4Sample.h GetOffset use after free
Details

A vulnerability was found in Axiomatic Bento4. It has been declared as critical. This vulnerability affects the function GetOffset of the file Ap4Sample.h of the component mp42hls. The manipulation leads to use after free. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-212002 is the identifier assigned to this vulnerability.

Database specific
{
    "cna_assigner": "VulDB",
    "cwe_ids": [
        "CWE-119"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/3xxx/CVE-2022-3662.json"
}
References

Affected packages

Git / github.com/axiomatic-systems/bento4

Affected ranges

Type
GIT
Repo
https://github.com/axiomatic-systems/bento4
Events
Database specific
{
    "cpe": "cpe:2.3:a:axiosys:bento4:1.6.0-639:*:*:*:*:*:*:*",
    "source": "CPE_STRING",
    "extracted_events": [
        {
            "introduced": "1.6.0-639"
        },
        {
            "last_affected": "1.6.0-639"
        }
    ]
}

Affected versions

1.*
1.6.0-639
v1.*
v1.6.0-639

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-3662.json"