Skip to content

write to null address on parse flv amf datetime

Moderate
ireader published GHSA-45q9-j8jf-7pqr May 8, 2022

Package

libflv (c)

Affected versions

master

Patched versions

None

Description

Impact

There is no check for timezone whether it's null or not
image

Patches

fix GHSA-45q9-j8jf-7pqr write invalid amf datetime pointer

Workarounds

check timezone

References

@Cossack9989

For more information

If you have any questions or comments about this advisory:

Severity

Moderate

CVE ID

No known CVE

Weaknesses

No CWEs

Credits