Back to bug 2141496

Who When What Removed Added
Sandipan Roy 2022-11-10 04:54:34 UTC Blocks 2136367
Sandipan Roy 2022-11-10 04:54:46 UTC CC abrianik, adudiak, bcoca, bdettelb, caswilli, cwelton, davidn, dffrench, epacific, gzaronik, hbraun, hhorak, jcammara, jhardy, jneedle, jobarker, jorton, jwong, jwon, kaycoth, kshier, mabashia, ngough, osapryki, rgodfrey, simaishi, smcdonal, teagle, yguenane, zsadeh
Sandipan Roy 2022-11-10 04:58:23 UTC Depends On 2141497, 2141504, 2141505, 2141498, 2141503, 2141500, 2141502, 2141501, 2141499
Sandipan Roy 2022-11-10 05:01:05 UTC Depends On 2141513, 2141515
Sandipan Roy 2022-11-10 07:17:21 UTC Doc Text A vulnerability was found in Nginx. This security vulnerability in the module ngx_http_mp4_module that might allow a local attacker to cause a worker process crash, or might result in worker process memory disclosure by using a specially crafted audio or video file. The issue affects only NGINX products that are built with the module ngx_http_mp4_module, when the mp4 directive is used in the configuration file. Further, the attack is possible only if an attacker can trigger processing of a specially crafted audio or video file with the module ngx_http_mp4_module.
RaTasha Tillery-Smith 2022-11-10 13:48:11 UTC Doc Text A vulnerability was found in Nginx. This security vulnerability in the module ngx_http_mp4_module that might allow a local attacker to cause a worker process crash, or might result in worker process memory disclosure by using a specially crafted audio or video file. The issue affects only NGINX products that are built with the module ngx_http_mp4_module, when the mp4 directive is used in the configuration file. Further, the attack is possible only if an attacker can trigger processing of a specially crafted audio or video file with the module ngx_http_mp4_module. A vulnerability was found in NGINX’s ngx_http_mp4_module module. This flaw allows a local attacker to cause a worker process crash or might result in worker process memory disclosure by using a specially crafted audio or video file. The issue affects only NGINX products built with ngx_http_mp4_module when the mp4 directive is used in the configuration file. Further, the attack is possible only if an attacker can trigger the processing of a specially crafted audio or video file with the ngx_http_mp4_module module.
RaTasha Tillery-Smith 2022-11-10 13:52:40 UTC Doc Text A vulnerability was found in NGINX’s ngx_http_mp4_module module. This flaw allows a local attacker to cause a worker process crash or might result in worker process memory disclosure by using a specially crafted audio or video file. The issue affects only NGINX products built with ngx_http_mp4_module when the mp4 directive is used in the configuration file. Further, the attack is possible only if an attacker can trigger the processing of a specially crafted audio or video file with the ngx_http_mp4_module module. A vulnerability was found in NGINX’s module, ngx_http_mp4_module. This flaw allows a local attacker to cause a worker process crash or might result in worker process memory disclosure by using a specially crafted audio or video file. The issue affects only NGINX products built with ngx_http_mp4_module when the mp4 directive is used in the configuration file. Further, the attack is possible only if an attacker can trigger the processing of a specially crafted audio or video file with ngx_http_mp4_module.
Vipul Nair 2022-11-28 08:21:26 UTC Depends On 2148866
Red Hat Bugzilla 2023-01-20 05:18:45 UTC CC cwelton
Derrick 2023-06-02 20:11:53 UTC CC derrick.roach.ctr
Red Hat Bugzilla 2023-07-07 08:33:03 UTC Assignee security-response-team nobody

Back to bug 2141496