PT-2026-83956 · Flvmeta · Flvmeta
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
FLVMeta versions prior to 1.2.3
Description
A heap-based buffer overflow occurs in the AMF String Processing component within the
amf string new() function located in the src/amf.c file. This issue is triggered by the manipulation of the argument length and can be exploited remotely.Recommendations
Apply patch f412a33b9a84c2d1a9dee145a868feddbf64879e to remediate the issue.
As a temporary mitigation, restrict the use of the
amf string new() function.Exploit
Fix
Buffer Overflow
Heap Based Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Flvmeta