CVE-2022-3785 | Axiomatic Bento4 Avcinfo SetDataSize heap-based overflow (Issue 780 / EUVD-2022-43133)
A vulnerability, which was classified as critical, has been found in Axiomatic Bento4. Affected is the function AP4_DataBuffer::SetDataSize of the component Avcinfo. This manipulation causes heap-based buffer overflow.
This vulnerability appears as CVE-2022-3785. The attack may be initiated remotely. In addition, an exploit is available.