Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2739▼ 510 respecto a la semana anterior
Críticas / altas1303▼ 212 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)225▼ 276 respecto a la semana anterior
195 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.5) | 0.65% | — | Axiosys Bento4 | 19/10/2022 | 17/6/2026 | An issue was discovered in Bento4 1.6.0-639. There is a bad free in the component AP4_HdlrAtom::~AP4_HdlrAtom() which allows attackers to cause a Denial of Service (DoS) via a crafted input. | |
| Modificada | Media (6.5) | 0.65% | — | Axiosys Bento4 | 19/10/2022 | 17/6/2026 | An issue was discovered in Bento4 v1.6.0-639. There is a memory leak in AP4_DescriptorFactory::CreateDescriptorFromStream in Core/Ap4DescriptorFactory.cpp, as demonstrated by mp42aac. | |
| Modificada | Alta (8.8) | 0.84% | — | Axiosys Bento4 | 3/10/2022 | 17/6/2026 | Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_BitReader::ReadBit function in mp4mux. | |
| Modificada | Alta (8.8) | 0.84% | — | Axiosys Bento4 | 3/10/2022 | 17/6/2026 | Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_Atom::TypeFromString function in mp4tag. | |
| Modificada | Alta (8.8) | 0.84% | — | Axiosys Bento4 | 3/10/2022 | 17/6/2026 | Bento4 v1.6.0-639 was discovered to contain a heap overflow via the AP4_BitReader::ReadBits function in mp4mux. | |
| Modificada | Media (6.5) | 0.68% | — | Axiosys Bento4 | 3/10/2022 | 17/6/2026 | Bento4 v1.6.0-639 was discovered to contain a memory leak in the AP4_AvcFrameParser::Feed function in mp4mux. | |
| Modificada | Media (6.5) | 0.68% | — | Axiosys Bento4 | 3/10/2022 | 17/6/2026 | Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_AtomFactory::CreateAtomFromStream function in mp4split. | |
| Modificada | Media (6.5) | 0.71% | — | Axiosys Bento4 | 3/10/2022 | 17/6/2026 | Bento4 v1.6.0-639 was discovered to contain a segmentation violation via the AP4_Processor::ProcessFragments function in mp4decrypt. | |
| Modificada | Media (6.5) | 0.68% | — | Axiosys Bento4 | 3/10/2022 | 17/6/2026 | Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_SttsAtom::Create function in mp42hls. | |
| Modificada | Media (6.5) | 0.68% | — | Axiosys Bento4 | 3/10/2022 | 17/6/2026 | Bento4 v1.6.0-639 was discovered to contain a segmentation violation in the mp4fragment component. | |
| Modificada | Media (6.5) | 0.68% | — | Axiosys Bento4 | 3/10/2022 | 17/6/2026 | Bento4 v1.6.0-639 was discovered to contain a memory leak via the AP4_Processor::Process function in the mp4encrypt binary. | |
| Modificada | Media (5.5) | 0.39% | — | Axiosys Bento4 | 30/9/2022 | 17/6/2026 | An issue was discovered in Bento4 1.6.0-639. A memory leak exists in AP4_StdcFileByteStream::Create(AP4_FileByteStream*, char const*, AP4_FileByteStream::Mode, AP4_ByteStream*&) in System/StdC/Ap4StdCFileByteStream.cpp. | |
| Modificada | Media (5.5) | 0.31% | — | Axiosys Bento4 | 30/9/2022 | 17/6/2026 | An issue was discovered in Bento4 1.6.0-639. There ie excessive memory consumption in the function AP4_DataBuffer::ReallocateBuffer in Core/Ap4DataBuffer.cpp. | |
| Modificada | Media (5.5) | 0.36% | — | Axiosys Bento4 | 30/9/2022 | 17/6/2026 | An issue was discovered in Bento4 1.6.0-639. There ie excessive memory consumption in the function AP4_Array<AP4_ElstEntry>::EnsureCapacity in Core/Ap4Array.h. | |
| Modificada | Media (5.5) | 0.29% | — | Axiosys Bento4 | 30/9/2022 | 17/6/2026 | An issue was discovered in Bento4 through 1.6.0-639. A NULL pointer dereference occurs in AP4_File::ParseStream in Core/Ap4File.cpp, which is called from AP4_File::AP4_File. | |
| Modificada | Media (5.5) | 0.32% | — | Axiosys Bento4 | 18/9/2022 | 17/6/2026 | An issue was discovered in Bento4 through 1.6.0-639. A NULL pointer dereference occurs in AP4_StszAtom::WriteFields. | |
| Modificada | Media (5.5) | 0.32% | — | Axiosys Bento4 | 18/9/2022 | 17/6/2026 | An issue was discovered in Bento4 through 1.6.0-639. There is a NULL pointer dereference in AP4_StszAtom::GetSampleSize. | |
| Modificada | Media (6.5) | 0.70% | — | Axiosys Bento4 | 15/9/2022 | 17/6/2026 | An issue was discovered in Bento4 through 1.6.0-639. A NULL pointer dereference occurs in AP4_DescriptorListWriter::Action in Core/Ap4Descriptor.h, called from AP4_EsDescriptor::WriteFields and AP4_Expandable::Write. | |
| Modificada | Media (6.5) | 0.70% | — | Axiosys Bento4 | 15/9/2022 | 17/6/2026 | An issue was discovered in Bento4 through 1.6.0-639. A buffer over-read exists in the function AP4_StdcFileByteStream::WritePartial located in System/StdC/Ap4StdCFileByteStream.cpp, called from AP4_ByteStream::Write and AP4_HdlrAtom::WriteFields. | |
| Modificada | Media (6.5) | 0.70% | — | Axiosys Bento4 | 15/9/2022 | 17/6/2026 | An issue was discovered in Bento4 1.6.0-639. There ie excessive memory consumption in AP4_CttsAtom::Create in Core/Ap4CttsAtom.cpp. | |
| Modificada | Media (6.5) | 0.70% | — | Axiosys Bento4 | 14/9/2022 | 17/6/2026 | An memory leak issue was discovered in AP4_StdcFileByteStream::Create in mp42ts in Bento4 v1.6.0-639, allows attackers to cause a denial of service via a crafted file. | |
| Modificada | Media (6.5) | 0.70% | — | Axiosys Bento4 | 14/9/2022 | 17/6/2026 | Buffer overflow vulnerability in function AP4_MemoryByteStream::WritePartial in mp42aac in Bento4 v1.6.0-639, allows attackers to cause a denial of service via a crafted file. | |
| Modificada | Crítica (9.8) | 0.87% | — | Rosariosis | 6/9/2022 | 17/6/2026 | Improper Handling of Length Parameter Inconsistency in GitHub repository francoisjacquet/rosariosis prior to 10.0. | |
| Modificada | Media (5.4) | 0.92% | — | Rosariosis | 1/9/2022 | 17/6/2026 | Cross-site Scripting (XSS) - Stored in GitHub repository francoisjacquet/rosariosis prior to 8.9.3. | |
| Modificada | Media (5.5) | 0.29% | — | Axiosys Bento4 | 18/8/2022 | 17/6/2026 | An issue in AP4_SgpdAtom::AP4_SgpdAtom() of Bento4-1.6.0-639 allows attackers to cause a Denial of Service (DoS) via a crafted mp4 input. |