buffer overflow in nginx rtmp module

Bug #1977718 reported by Sven Neuhaus
258
This bug affects 1 person
Affects Status Importance Assigned to Milestone
nginx (Ubuntu)
New
Undecided
Unassigned

Bug Description

The relevant package name is libnginx-mod-rtmp.

There is a fix for a buffer overrun in the nginx RTMP module:

https://github.com/arut/nginx-rtmp-module/commit/2f2db811f8533782dfbef57fdb14f4737e2be55a

It should be applied to this package.

You should also fix the null pointer dereference as done with this commit

https://github.com/arut/nginx-rtmp-module/commit/23e1873aa62acb58b7881eed2a501f5bf35b82e9

Revision history for this message
Steve Beattie (sbeattie) wrote :

Thanks for the report. Have CVEs been assigned for either of these issues?

Given that the commits are public, I'm opening this bug up as public as well.

information type: Private Security → Public Security
To post a comment you must log in.
This report contains Public Security information  
Everyone can see this security related information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.