CVE detail
CVE-2020-21066 — CVE-2020-21066
Published 2021-08-13 · Modified 2026-06-17 · Vendor axiosys · Product bento4 · Source nvd
MEDIUM
severity
CVSS-derived band
0.0085
EPSS probability
exploitation probability, 30d
55.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog
Description
An issue was discovered in Bento4 v1.5.1.0. There is a heap-buffer-overflow in AP4_Dec3Atom::AP4_Dec3Atom at Ap4Dec3Atom.cpp, leading to a denial of service (program crash), as demonstrated by mp42aac.
Remediation
No vendor-published fix data in our corpus for this CVE. Check the references below or the vendor's PSIRT / security advisories page.
References