Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
live555 live555 vulnerabilities and exploits
(subscribe to this query)
445
VMScore
CVE-2021-41396
Live555 up to and including 1.08 does not handle socket connections properly. A huge number of incoming socket connections in a short time invokes the error-handling module, in which a heap-based buffer overflow happens. An attacker can leverage this to launch a DoS attack.
Live555 Live555
445
VMScore
CVE-2021-38380
Live555 up to and including 1.08 mishandles huge requests for the same MP3 stream, leading to recursion and s stack-based buffer over-read. An attacker can leverage this to launch a DoS attack.
Live555 Live555
383
VMScore
CVE-2021-38381
Live555 up to and including 1.08 does not handle MPEG-1 or 2 files properly. Sending two successive RTSP SETUP commands for the same track causes a Use-After-Free and daemon crash.
Live555 Live555
383
VMScore
CVE-2021-38382
Live555 up to and including 1.08 does not handle Matroska and Ogg files properly. Sending two successive RTSP SETUP commands for the same track causes a Use-After-Free and daemon crash.
Live555 Live555
445
VMScore
CVE-2021-39282
Live555 up to and including 1.08 has a memory leak in AC3AudioStreamParser for AC3 files.
Live555 Live555
383
VMScore
CVE-2021-39283
liveMedia/FramedSource.cpp in Live555 up to and including 1.08 allows an assertion failure and application exit via multiple SETUP and PLAY commands.
Live555 Live555
668
VMScore
CVE-2013-6933
The parseRTSPRequestString function in Live Networks Live555 Streaming Media 2011.08.13 up to and including 2013.11.25, as used in VideoLAN VLC Media Player, allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a (1) space or ...
Live555 Streaming Media 2013-11-25
Live555 Streaming Media 2013-10-03
Live555 Streaming Media 2013-10-02
Live555 Streaming Media 2013-10-01
Live555 Streaming Media 2013-09-30
Live555 Streaming Media 2013-07-03
Live555 Streaming Media 2013-06-30
Live555 Streaming Media 2013-06-18
Live555 Streaming Media 2013-06-14
Live555 Streaming Media 2013-04-01
Live555 Streaming Media 2013-03-31
Live555 Streaming Media 2013-03-23
Live555 Streaming Media 2013-03-07
Live555 Streaming Media 2013-02-27
Live555 Streaming Media 2012-12-24
Live555 Streaming Media 2012-12-23
Live555 Streaming Media 2012-12-22
Live555 Streaming Media 2012-12-21
Live555 Streaming Media 2012-10-18
Live555 Streaming Media 2012-10-17
Live555 Streaming Media 2012-10-16
Live555 Streaming Media 2012-10-12
NA
CVE-2023-37117
A heap-use-after-free vulnerability was found in live555 version 2023.05.10 while handling the SETUP.
Live555 Live555 2023.05.10
668
VMScore
CVE-2018-4013
An exploitable code execution vulnerability exists in the HTTP packet-parsing functionality of the LIVE555 RTSP server library version 0.92. A specially crafted packet can cause a stack-based buffer overflow, resulting in code execution. An attacker can send a packet to trigger t...
Live555 Live555 Media Server 0.92
Debian Debian Linux 8.0
Debian Debian Linux 9.0
4 Github repositories
668
VMScore
CVE-2019-6256
A Denial of Service issue exists in the LIVE555 Streaming Media libraries as used in Live555 Media Server 0.93. It can cause an RTSPServer crash in handleHTTPCmd_TunnelingPOST, when RTSP-over-HTTP tunneling is supported, via x-sessioncookie HTTP headers in a GET request and a POS...
Live555 Live555 Media Server 0.93
Debian Debian Linux 8.0
Debian Debian Linux 9.0
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »