Back to bug 2141495

Who When What Removed Added
Sandipan Roy 2022-11-10 04:51:59 UTC Blocks 2136367
Sandipan Roy 2022-11-10 04:52:13 UTC CC bcoca, cwelton, davidn, epacific, hhorak, jcammara, jhardy, jneedle, jobarker, jorton, mabashia, osapryki, simaishi, smcdonal, teagle, yguenane, zsadeh
Sandipan Roy 2022-11-10 04:53:03 UTC CC abrianik, adudiak, bdettelb, caswilli, dffrench, gzaronik, hbraun, jwong, jwon, kaycoth, kshier, ngough, rgodfrey
Sandipan Roy 2022-11-10 05:01:11 UTC Depends On 2141512, 2141514, 2141516, 2141507, 2141508, 2141510, 2141506, 2141518, 2141509, 2141511, 2141517
Sandipan Roy 2022-11-10 07:19:19 UTC Doc Text A vulnerability was found in Nginx. This vulnerability in the module ngx_http_mp4_module that might allow a local attacker to corrupt NGINX worker memory, resulting in its termination or potential other impact using a specially crafted audio or video file. The issue affects only NGINX products that are built with the ngx_http_mp4_module, when the mp4 directive is used in the configuration file. Further, the attack is possible only if an attacker can trigger the processing of a specially crafted audio or video file with the module ngx_http_mp4_module.
RaTasha Tillery-Smith 2022-11-10 13:41:16 UTC Doc Text A vulnerability was found in Nginx. This vulnerability in the module ngx_http_mp4_module that might allow a local attacker to corrupt NGINX worker memory, resulting in its termination or potential other impact using a specially crafted audio or video file. The issue affects only NGINX products that are built with the ngx_http_mp4_module, when the mp4 directive is used in the configuration file. Further, the attack is possible only if an attacker can trigger the processing of a specially crafted audio or video file with the module ngx_http_mp4_module. A vulnerability was found in NGINX’s ngx_http_mp4_module. This flaw allows a local attacker to corrupt NGINX worker memory, resulting in its termination using a specially crafted audio or video file. The issue affects only NGINX products built with the ngx_http_mp4_module when the mp4 directive is used in the configuration file. Further, the attack is possible only if an attacker can trigger the processing of a specially crafted audio or video file with the module ngx_http_mp4_module.
RaTasha Tillery-Smith 2022-11-10 13:51:59 UTC Doc Text A vulnerability was found in NGINX’s ngx_http_mp4_module. This flaw allows a local attacker to corrupt NGINX worker memory, resulting in its termination using a specially crafted audio or video file. The issue affects only NGINX products built with the ngx_http_mp4_module when the mp4 directive is used in the configuration file. Further, the attack is possible only if an attacker can trigger the processing of a specially crafted audio or video file with the module ngx_http_mp4_module. A vulnerability was found in NGINX's module, ngx_http_mp4_module. This flaw allows a local attacker to corrupt NGINX worker memory, resulting in its termination using a specially crafted audio or video file. The issue affects only NGINX products built with ngx_http_mp4_module when the mp4 directive is used in the configuration file. Further, the attack is possible only if an attacker can trigger the processing of a specially crafted audio or video file with ngx_http_mp4_module.
Vipul Nair 2022-11-28 08:21:14 UTC Depends On 2148865
Red Hat Bugzilla 2023-01-20 05:18:52 UTC CC cwelton
Derrick 2023-06-02 20:13:47 UTC CC derrick.roach.ctr
Red Hat Bugzilla 2023-07-07 08:31:13 UTC Assignee security-response-team nobody

Back to bug 2141495