The AMF3ReadString function in amf.c in RTMPDump 2.4 allows remote RTMP Media servers to cause a denial of service (invalid pointer dereference and process crash).
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
http://www.talosintelligence.com/reports/TALOS-2016-0066/ | vdb entry exploit third party advisory technical description |
http://www.debian.org/security/2017/dsa-3850 | vendor advisory |
http://www.securityfocus.com/bid/95126 | vendor advisory third party advisory vdb entry |