Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2018-14403

MP4NameFirstMatches in mp4util.cpp in MP4v2 2.0.0 mishandles substrings of atom names, leading to use of an inappropriate data type for associated atoms. The resulting type confusion can cause out-of-bounds memory access.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.006
EPSS Ranking 67.8%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
References
Products affected by CVE-2018-14403
  • Techsmith » Mp4v2 » Version: 2.0.0
    cpe:2.3:a:techsmith:mp4v2:2.0.0


Contact Us

Shodan ® - All rights reserved