Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 29 Jun 2026 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Stack Overflow in Bento4's AP4_StsdAtom Allows Denial of Service via Crafted MP4 |
Mon, 29 Jun 2026 16:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Stack overflow in Bento4 MP4 parser causes denial of service | |
| Weaknesses | CWE-119 |
Mon, 29 Jun 2026 13:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-121 | |
| Metrics |
cvssV3_1
|
Fri, 26 Jun 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Stack overflow in Bento4 MP4 parser causes denial of service | |
| Weaknesses | CWE-119 |
Fri, 26 Jun 2026 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A stack overflow in the AP4_StsdAtom::AP4_StsdAtom component of axiomatic-systems Bento4 before v1.8.9allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file. | |
| References |
|
Subscriptions
No data.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-06-29T13:03:27.492Z
Reserved: 2026-04-06T00:00:00.000Z
Link: CVE-2026-36907
Updated: 2026-06-29T13:03:14.667Z
No data.
No data.
OpenCVE Enrichment
Updated: 2026-06-29T17:30:06Z