CVE-2012-2089 in F5 Networks and Fedora Project Products
Published on April 17, 2012
Buffer overflow in ngx_http_mp4_module.c in the ngx_http_mp4_module module in nginx 1.0.7 through 1.0.14 and 1.1.3 through 1.1.18, when the mp4 directive is used, allows remote attackers to cause a denial of service (memory overwrite) or possibly execute arbitrary code via a crafted MP4 file.
Products Associated with CVE-2012-2089
stack.watch emails you whenever new vulnerabilities are published in F5 Networks Nginx or Fedora Project Fedora. Just hit a watch button to start following.
Exploit Probability
EPSS
5.32%
Percentile
89.98%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.