Rtmpdump Project maintains a focused streaming-media utility that enables RTMP protocol handling and download operations, with its vulnerability footprint centered on a single product of modest but durable prevalence in multimedia and streaming contexts. The recurring weakness classes—NULL pointer dereferences and write-what-where conditions—reflect the memory-management and pointer-handling demands inherent to protocol parsing in native code; current severity and exploitation metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Rtmpdump Project over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-8271CRITICAL The AMF3CD_AddProp function in amf.c in RTMPDump 2.4 allows remote RTMP Media servers to execute arbitrary code. | Apr 13, 2017 | 9.8 | 26 | NO | NO |
CVE-2015-8270HIGH The AMF3ReadString function in amf.c in RTMPDump 2.4 allows remote RTMP Media servers to cause a denial of service (invalid pointer dereference and process crash). | Apr 13, 2017 | 7.5 | 23 | NO | NO |
CVE-2015-8272MEDIUM RTMPDump 2.4 allows remote attackers to trigger a denial of service (NULL pointer dereference and process crash). | Apr 13, 2017 | 6.5 | 18 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Rtmpdump Project.
Media articles that mention a CVE ID that affects a product developed by Rtmpdump Project — matched by CVE ID, not by vendor name.