First published: Tue Apr 17 2012(Updated: )
Buffer overflow in ngx_http_mp4_module.c in the ngx_http_mp4_module module in nginx 1.0.7 through 1.0.14 and 1.1.3 through 1.1.18, when the mp4 directive is used, allows remote attackers to cause a denial of service (memory overwrite) or possibly execute arbitrary code via a crafted MP4 file.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
F5 Nginx | >=1.0.7<=1.0.14 | |
F5 Nginx | >=1.1.3<=1.1.18 | |
Fedoraproject Fedora | =15 | |
Fedoraproject Fedora | =16 | |
Fedoraproject Fedora | =17 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.