CVE-2023-1451

Source
https://cve.org/CVERecord?id=CVE-2023-1451
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-1451.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-1451
Downstream
Published
2023-03-17T06:49:07.914Z
Modified
2026-07-15T01:49:22.166016920Z
Severity
  • 3.3 (Low) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L CVSS Calculator
Summary
MP4v2 mp4track.cpp GetSampleFileOffset denial of service
Details

A vulnerability was found in MP4v2 2.1.2. It has been classified as problematic. Affected is the function mp4v2::impl::MP4Track::GetSampleFileOffset of the file mp4track.cpp. The manipulation leads to denial of service. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-223296.

Database specific
{
    "cwe_ids": [
        "CWE-404"
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/1xxx/CVE-2023-1451.json",
    "cna_assigner": "VulDB",
    "unresolved_ranges": [
        {
            "extracted_events": [
                {
                    "introduced": "2.1.2"
                },
                {
                    "last_affected": "2.1.2"
                }
            ],
            "source": "AFFECTED_FIELD"
        }
    ]
}
References

Affected packages

Git / github.com/enzo1982/mp4v2

Affected ranges

Type
GIT
Repo
https://github.com/enzo1982/mp4v2
Events
Database specific
{
    "cpe": "cpe:2.3:a:mp4v2_project:mp4v2:2.1.2:*:*:*:*:*:*:*",
    "extracted_events": [
        {
            "introduced": "2.1.2"
        },
        {
            "last_affected": "2.1.2"
        }
    ],
    "source": "CPE_STRING"
}

Affected versions

2.*
2.1.2
v2.*
v2.1.2

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2023-1451.json"