RTMP Heap Overflow CVE-2016-10191 - Exploiting FFmpeg ft. Paul Cher

hRei9xXRAGE/default.jpg

Paul shows us another exploit for FFmpeg. The vulnerability is located in the RTMP protocol. While working with the binary format of the protocol requires a lot of work, the exploit itself is very easy.

Vulnerable Version: https://github.com/FFmpeg/FFmpeg/tree...

Paul on Twitter: https://twitter.com/__paulch
LiveOverflow Podcast: http://liveoverflow.libsyn.com/

Original Email: http://www.openwall.com/lists/oss-sec...
--------------------------------------
Twitter: https://twitter.com/LiveOverflow
Website: http://liveoverflow.com/
Subreddit: https://www.reddit.com/r/LiveOverflow/
Facebook: https://www.facebook.com/LiveOverflow/


RTMP Heap Overflow CVE-2016-10191 - Exploiting FFmpeg ft. Paul Cher RTMP Heap Overflow CVE-2016-10191 - Exploiting FFmpeg ft. Paul Cher Reviewed by Anonymous on January 12, 2018 Rating: 5