CVE-2025-8537 | Axiomatic Bento4 up to 1.6.0-641 mp4decrypt Mp4Decrypt.cpp SetDataSize allocation of resources (Issue 1037)
A vulnerability marked as problematic has been reported in Axiomatic Bento4 up to 1.6.0-641. The affected element is the function AP4_DataBuffer::SetDataSize of the file Mp4Decrypt.cpp of the component mp4decrypt. The manipulation leads to allocation of resources.
This vulnerability is referenced as CVE-2025-8537. Remote exploitation of the attack is possible. Furthermore, an exploit is available.