9.8
CVSSv3

CVE-2015-8271

Published: 13/04/2017 Updated: 04/11/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The AMF3CD_AddProp function in amf.c in RTMPDump 2.4 allows remote RTMP Media servers to execute arbitrary code.

Vulnerable Product Search on Vulmon Subscribe to Product

rtmpdump_project rtmpdump 2.4

Vendor Advisories

rtmpdump could be made to crash or run programs as your login if it processed a specially crafted stream ...
rtmpdump could be made to crash or run programs as your login if it processed a specially crafted stream ...
Dave McDaniel discovered multiple vulnerabilities in rtmpdump, a small dumper/library for RTMP media streams, which may result in denial of service or the execution of arbitrary code if a malformed stream is dumped For the stable distribution (jessie), these problems have been fixed in version 24+20150115gita107cef-1+deb8u1 For the upcoming sta ...