[FFmpeg-trac] #5992(avformat:open): Heap-overflow in http.c results Remote Code Execution

FFmpeg trac at avcodec.org
Mon Dec 5 16:49:42 EET 2016


#5992: Heap-overflow in http.c results Remote Code Execution
-------------------------------------+-------------------------------------
             Reporter:  paulch       |                    Owner:
                 Type:  defect       |                   Status:  open
             Priority:  critical     |                Component:  avformat
              Version:  git-master   |               Resolution:
             Keywords:  http crash   |               Blocked By:
  SIGSEGV                            |  Reproduced by developer:  1
             Blocking:               |
Analyzed by developer:  0            |
-------------------------------------+-------------------------------------

Comment (by paulch):

 Thanks for your feedback. All future bug reports will be submitted to
 ffmpeg-security at ffmpeg.org .

 Patches have been already proposed by FFmpeg developers and reviewed by
 our team.
 Thank you.

--
Ticket URL: <https://trac.ffmpeg.org/ticket/5992#comment:5>
FFmpeg <https://ffmpeg.org>
FFmpeg issue tracker


More information about the FFmpeg-trac mailing list