NULL pointer dereference - CVE-2015-8270

 

NULL pointer dereference - CVE-2015-8270

Published: May 24, 2017


Vulnerability identifier: #VU6691
CSH Severity: Low
CVSS v4.0:
CVE-ID: CVE-2015-8270
CWE-ID: CWE-476
Exploitation vector: Remote access
Exploit availability: No public exploit available
Vendor:
Affected software:

Detailed vulnerability description

The AMF3ReadString function in amf.c in RTMPDump 2.4 allows remote RTMP Media servers to cause a denial of service (invalid pointer dereference and process crash).

How to mitigate CVE-2015-8270


Sources