Adult Script Pro Community Forums

The forum is here for legacy reasons. No new posts will be created. User registration is disabled! If you have any questions, please email us or check https://www.adultscriptpro.com for more details!

You are not logged in.

#1 2016-01-19 21:06:33

symtab
Administrator
Registered: 2010-08-23
Posts: 7,501
Website

Ffmpeg vulnerability

Hi,

A new vulnerability has been found in ffmpeg, which allows a reading of local files (for example the password file(s)) and sending them over the internet. In order to fix this please recompile all ffmpeg setups with the --disable-network option or upgrade to ffmpeg version 2.8.5 (you can see here the vulnerability has been fixed https://www.ffmpeg.org/security.html)

You can read more about his bug here: https://news.ycombinator.com/item?id=10893301 and here: http://www.openwall.com/lists/oss-security/2016/01/13/3

Please NOTE that this is not a bug in Adult Script Pro, it is a bug in ffmpeg and ALL scripts using ffmpeg (all of them, including the ones using mplayer/mencoder) are vulnerable.


Adult Scripts: Adult Script Pro - Adult Search Script
Adult Advertising/Traffic: Plug Rush - EXOClick - PopAds

Offline

Board footer

Powered by FluxBB