Posted by Ron E on Sep 08
Malformed .m3u8 playlists can trigger a heap use-after-free when the HLS
demuxer handles segment references. ASan reports access to freed memory
inside libavformat/utils.c:528. A crafted .m3u8 could allow remote
attackers to achieve denial of service (DoS), information disclosure, or
potentially remote code execution depending on heap state. (FFmpeg 7.0-8.0)
*Impact:*
–
Remote attackers can crash the transcoder with a malicious playlist….
– Read More – Full Disclosure



