Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Ccpx

#52918of 53,622
3.3Total CVSS
Vulnerabilities · 1
PT-2023-16993
3.3
2023-03-17
Mp4V2 · Mp4V2 · CVE-2023-1451
**Name of the Vulnerable Software and Affected Versions** MP4v2 version 2.1.2 **Description** A vulnerability was found in the function `mp4v2::impl::MP4Track::GetSampleFileOffset` of the file `mp4track.cpp`. The manipulation leads to denial of service. An attack has to be approached locally. The exploit has been disclosed to the public and may be used. **Recommendations** For MP4v2 version 2.1.2, consider disabling the `mp4v2::impl::MP4Track::GetSampleFileOffset` function until a patch is available. Restrict access to the `mp4track.cpp` file to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.