tsMuxer v2.6.16 was discovered to contain a heap-based buffer overflow via the function HevcSpsUnit::short_term_ref_pic_set(int) in hevc.cpp.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://github.com/justdan96/tsMuxer/pull/422/files | third party advisory patch |
https://github.com/justdan96/tsMuxer/issues/436 | third party advisory exploit |