CVE-2020-19721: Axiosys BENTO4

Medium severity, CVSS 6.5. EPSS: 1.2% chance of exploitation in the next 30 days.

A heap buffer overflow vulnerability in Ap4TrunAtom.cpp of Bento 1.5.1-628 may lead to an out-of-bounds write while running mp42aac, leading to system crashes and a denial of service (DOS).

Affected products

  • Axiosys BENTO4: version 1.5.1-628 only

Published 2021-07-13. Last modified 2026-06-17.