CVE-2012-2089
17.04.2012, 21:55
Buffer overflow in ngx_http_mp4_module.c in the ngx_http_mp4_module module in nginx 1.0.7 through 1.0.14 and 1.1.3 through 1.1.18, when the mp4 directive is used, allows remote attackers to cause a denial of service (memory overwrite) or possibly execute arbitrary code via a crafted MP4 file.
Vendor | Product | Version |
---|---|---|
f5 | nginx | 1.0.7 ≤ 𝑥 ≤ 1.0.14 |
f5 | nginx | 1.1.3 ≤ 𝑥 ≤ 1.1.18 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References