Use-after-free vulnerability in Bento4 1.5.1.0: AP4_Sample::GetOffset in Core/Ap4Sample.h

Use-after-free vulnerability in Bento4 1.5.1.0: AP4_Sample::GetOffset in Core/Ap4Sample.h

CVE-2019-20090 · HIGH Severity

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

An issue was discovered in Bento4 1.5.1.0. There is a use-after-free in AP4_Sample::GetOffset in Core/Ap4Sample.h when called from Ap4LinearReader.cpp.

Learn more about our Web Application Penetration Testing UK.