CVE-2025-25944 – Bento4 Buffer Overflow Arbitrary Code Execution

The following table lists the changes that have been made to the
CVE-2025-25944 vulnerability over time.

Vulnerability history details can be useful for understanding the evolution
of a vulnerability, and for identifying the most recent changes that may
impact the vulnerability’s severity, exploitability, or other characteristics.

  • New CVE Received
    by [email protected]

    Feb. 19, 2025

    Action Type Old Value New Value
    Added Description Buffer Overflow vulnerability in Bento4 v.1.6.0-641 allows a local attacker to execute arbitrary code via the Ap4RtpAtom.cpp, specifically in AP4_RtpAtom::AP4_RtpAtom, during the execution of mp4fragment with a crafted MP4 input file.
    Added Reference https://github.com/axiomatic-systems/Bento4/issues/993
Share the Post:

Related Posts