CVE-2012-2089
published 2012-04-17CVE-2012-2089: Buffer overflow in ngx_http_mp4_module.c in the ngx_http_mp4_module module in nginx 1.0.7 through 1.0.14 and 1.1.3 through 1.1.18, when the mp4 directive is…
PriorityP338medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
9.63%
94.9th percentile
Buffer overflow in ngx_http_mp4_module.c in the ngx_http_mp4_module module in nginx 1.0.7 through 1.0.14 and 1.1.3 through 1.1.18, when the mp4 directive is used, allows remote attackers to cause a denial of service (memory overwrite) or possibly execute arbitrary code via a crafted MP4 file.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | nginx | < nginx 1.1.19-1 (bookworm) | nginx 1.1.19-1 (bookworm) |
| f5 | nginx | >= 0 < 1.1.19-1 | 1.1.19-1 |
| f5 | nginx | >= 0 < 1.1.19-1 | 1.1.19-1 |
| f5 | nginx | >= 0 < 1.1.19-1 | 1.1.19-1 |
| f5 | nginx | >= 0 < 1.1.19-1 | 1.1.19-1 |
| f5 | nginx | 1.0.7 – 1.0.14 | — |
| f5 | nginx | 1.1.3 – 1.1.18 | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv6.8MEDIUM
vendor_debian6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-9pvj-32x2-9jrc: Buffer overflow in ngx_http_mp4_module
ghsa_unreviewed·2022-05-13
CVE-2012-2089 [MEDIUM] CWE-120 GHSA-9pvj-32x2-9jrc: Buffer overflow in ngx_http_mp4_module
Buffer overflow in ngx_http_mp4_module.c in the ngx_http_mp4_module module in nginx 1.0.7 through 1.0.14 and 1.1.3 through 1.1.18, when the mp4 directive is used, allows remote attackers to cause a denial of service (memory overwrite) or possibly execute arbitrary code via a crafted MP4 file.
OSV
CVE-2012-2089: Buffer overflow in ngx_http_mp4_module
osv·2012-04-17·CVSS 6.8
CVE-2012-2089 [MEDIUM] CVE-2012-2089: Buffer overflow in ngx_http_mp4_module
Buffer overflow in ngx_http_mp4_module.c in the ngx_http_mp4_module module in nginx 1.0.7 through 1.0.14 and 1.1.3 through 1.1.18, when the mp4 directive is used, allows remote attackers to cause a denial of service (memory overwrite) or possibly execute arbitrary code via a crafted MP4 file.
Debian
CVE-2012-2089: nginx - Buffer overflow in ngx_http_mp4_module.c in the ngx_http_mp4_module module in ng...
vendor_debian·2012·CVSS 6.8
CVE-2012-2089 [MEDIUM] CVE-2012-2089: nginx - Buffer overflow in ngx_http_mp4_module.c in the ngx_http_mp4_module module in ng...
Buffer overflow in ngx_http_mp4_module.c in the ngx_http_mp4_module module in nginx 1.0.7 through 1.0.14 and 1.1.3 through 1.1.18, when the mp4 directive is used, allows remote attackers to cause a denial of service (memory overwrite) or possibly execute arbitrary code via a crafted MP4 file.
Scope: local
bookworm: resolved (fixed in 1.1.19-1)
bullseye: resolved (fixed in 1.1.19-1)
forky: resolved (fixed in 1.1.19-1)
sid: resolved (fixed in 1.1.19-1)
trixie: resolved (fixed in 1.1.19-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-2089 nginx: arbitrary code execution in mp4 pseudo-streaming module [fedora-all]
bugzilla·2012-04-12·CVSS 6.8
CVE-2012-2089 [MEDIUM] CVE-2012-2089 nginx: arbitrary code execution in mp4 pseudo-streaming module [fedora-all]
CVE-2012-2089 nginx: arbitrary code execution in mp4 pseudo-streaming module [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?
Bugzilla
CVE-2012-2089 nginx: arbitrary code execution in mp4 pseudo-streaming module [epel-all]
bugzilla·2012-04-12·CVSS 6.8
CVE-2012-2089 [MEDIUM] CVE-2012-2089 nginx: arbitrary code execution in mp4 pseudo-streaming module [epel-all]
CVE-2012-2089 nginx: arbitrary code execution in mp4 pseudo-streaming module [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/updates/new/?ty
Bugzilla
CVE-2012-2089 nginx: arbitrary code execution in mp4 pseudo-streaming module
bugzilla·2012-04-12·CVSS 6.8
CVE-2012-2089 [MEDIUM] CVE-2012-2089 nginx: arbitrary code execution in mp4 pseudo-streaming module
CVE-2012-2089 nginx: arbitrary code execution in mp4 pseudo-streaming module
A flaw was reported [1] in the nginx standard mp4 pseudo-streaming module. A specially-crafted mp4 file could allow for the overwriting of memory locations in a worker process if ngx_http_mp4_module were used. This could potentially result in arbitrary code execution with the privileges of the unprivileged nginx user.
This has been corrected in upstream 1.0.15 and 1.1.9 versions, and only affected versions newer than 1.1.3 and 1.0.7 when built with the ngx_http_mp4_module and had the "mp4" directive set in the configuration file. A patch to correct this flaw is available as well [2].
[1] http://nginx.org/en/security_advisories.html
[2] http://nginx.org/download/patch.2012.mp4.txt
Discussion:
Created nginx tra
http://lists.fedoraproject.org/pipermail/package-announce/2012-April/079388.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2012-May/079467.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2012-May/079474.htmlhttp://nginx.org/en/security_advisories.htmlhttp://www.openwall.com/lists/oss-security/2012/04/12/9http://www.securityfocus.com/bid/52999http://www.securitytracker.com/id?1026924https://exchange.xforce.ibmcloud.com/vulnerabilities/74831http://lists.fedoraproject.org/pipermail/package-announce/2012-April/079388.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2012-May/079467.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2012-May/079474.htmlhttp://nginx.org/en/security_advisories.htmlhttp://www.openwall.com/lists/oss-security/2012/04/12/9http://www.securityfocus.com/bid/52999http://www.securitytracker.com/id?1026924https://exchange.xforce.ibmcloud.com/vulnerabilities/74831
2012-04-17
Published