PT-2023-13739 · Librtmp+1 · Librtmp+1
50U1W4Y
·
Publicado
2023-02-15
·
Atualizado
2025-03-19
·
CVE-2022-40016
CVSS v3.1
7.5
Alta
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
ireader media-server versions before commit 3e0f63f1d3553f75c7d4eb32fa7c7a1976a9ff84
Description
The issue is related to a Use After Free (UAF) vulnerability in the librtmp component of the ireader media-server, which allows attackers to cause a denial of service. This vulnerability can be exploited to disrupt the service, but no information is provided about the estimated number of potentially affected devices or real-world incidents.
Recommendations
To resolve the issue, update the ireader media-server to a version that includes the commit 3e0f63f1d3553f75c7d4eb32fa7c7a1976a9ff84 or later. As a temporary workaround, consider restricting access to the librtmp component until a patch is available.
Exploit
Correção
DoS
Use After Free
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ireader Media-Server
Librtmp