An issue was discovered in Bento4 through v1.6.0-637. A NULL pointer dereference exists in the function AP4_StszAtom::GetSampleSize() located in Ap4StszAtom.cpp. It allows an attacker to cause Denial of Service.
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-23912.json"