#VU43167 Input validation error in Firefly Media Server - CVE-2012-5875
Published: January 18, 2013 / Updated: August 11, 2020
Firefly Media Server
fireflymediaserver.org
Description
The vulnerability allows remote attackers to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input. A remote attacker can cause a denial of service (NULL pointer dereference) via a (1) crafted Connection HTTP header; a return carriage control character in the (2) Accept Language header, (3) User-agent header, (4) Host header, or (5) protocol version; or a (6) crafted HTTP protocol version.