Type Confusion and Out-of-Bounds Memory Access Vulnerability in MP4v2 2.0.0

Type Confusion and Out-of-Bounds Memory Access Vulnerability in MP4v2 2.0.0

CVE-2018-14403 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

MP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substrings of atom names, leading to use of an inappropriate data type for associated atoms. The resulting type confusion can cause out-of-bounds memory access.

Learn more about our Web Application Penetration Testing UK.