CVE-2018-14446: Techsmith MP4V2

High severity, CVSS 8.8. EPSS: 2.4% chance of exploitation in the next 30 days.

MP4Integer32Property::Read in atom_avcC.cpp in MP4v2 2.1.0 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted MP4 file.

Affected products

Published 2018-07-20. Last modified 2026-06-17.