
Cloud Vulnerability DB
A community-led vulnerabilities database
Bento4 v1.6.0-639 was discovered to contain a memory leak vulnerability in the AP4_AvcFrameParser::Feed function within the mp4mux component (MITRE, NVD). The vulnerability was discovered and disclosed in September 2022.
The vulnerability manifests as a memory leak in the AP4_AvcFrameParser::Feed function when processing MP4 files. According to the proof of concept, the issue results in a direct leak of 148 bytes in a single object allocation, which occurs during the parsing of AVC (H.264) frame data (GitHub Issue).
When exploited, this vulnerability can lead to memory leaks in the system, potentially causing resource exhaustion and degraded system performance over time. This could eventually result in a denial of service condition if sufficient memory is leaked.
No official patch or mitigation strategy has been publicly documented for this specific vulnerability. Users are advised to monitor for updates from the Bento4 project maintainers and implement memory monitoring and resource limitation measures as temporary workarounds.
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."