CVE-2015-8270

Published: 13 April 2017

The AMF3ReadString function in amf.c in RTMPDump 2.4 allows remote RTMP Media servers to cause a denial of service (invalid pointer dereference and process crash).

Priority

Medium

CVSS 3 base score: 7.5

Status

Package Release Status
rtmpdump
Launchpad, Ubuntu, Debian
Upstream
Released (2.4+20151223.gitfa8646d.1-1)
Ubuntu 16.04 ESM (Xenial Xerus)
Released (2.4+20151223.gitfa8646d-1ubuntu0.1)
Ubuntu 14.04 ESM (Trusty Tahr)
Released (2.4+20121230.gitdf6c518-1ubuntu0.1)
Patches:
Upstream: http://git.ffmpeg.org/gitweb/rtmpdump.git/commitdiff/10b580aabcec1621b25518271ba1ab2b018be88e