Dave McDaniel discovered that rtmpdump incorrectly handled certain malformed streams. If a user were tricked into processing a specially crafted stream, a remote attacker could cause rtmpdump to crash, resulting in a denial of service, or possibly execute arbitrary code.
{ "binaries": [ { "binary_name": "librtmp-dev", "binary_version": "2.4+20121230.gitdf6c518-1ubuntu0.1" }, { "binary_name": "librtmp0", "binary_version": "2.4+20121230.gitdf6c518-1ubuntu0.1" }, { "binary_name": "rtmpdump", "binary_version": "2.4+20121230.gitdf6c518-1ubuntu0.1" } ], "availability": "No subscription required" }
{ "binaries": [ { "binary_name": "librtmp-dev", "binary_version": "2.4+20151223.gitfa8646d-1ubuntu0.1" }, { "binary_name": "librtmp1", "binary_version": "2.4+20151223.gitfa8646d-1ubuntu0.1" }, { "binary_name": "rtmpdump", "binary_version": "2.4+20151223.gitfa8646d-1ubuntu0.1" } ], "availability": "No subscription required" }