FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

nginx -- Vulnerability in the ngx_http_mp4_module

Affected packages
1.5.13 <= nginx-devel < 1.27.1
1.6.0 <= nginx < 1.26.2

Details

VuXML ID addc71b8-6024-11ef-86a1-8c164567ca3c
Discovery 2024-08-14
Entry 2024-08-22

The nginx development team reports:

This update fixes the buffer overread vulnerability in the ngx_http_mp4_module.

References

CVE Name CVE-2024-7347