PT-2026-83957 · Flvmeta · Flvmeta
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
FLVMeta versions prior to 1.2.3
Description
A remote attack can trigger a null pointer dereference—a condition where the software attempts to read from a memory address that is null, typically leading to a crash—within the AMF Object Parsing component. The issue resides in the
amf object get() function located in the src/amf.c file.Recommendations
Deploy patch 52642f7dfb76ec7334016622dde60b1ae963d79b for versions prior to 1.2.3.
Exploit
Fix
Improper Resource Release
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Flvmeta