Related Vulnerabilities: CVE-2021-38381  

live-media before version 2021.08.09 does not handle MPEG-1 or 2 files properly. Sending two successive RTSP SETUP commands for the same track causes a use-after-free and daemon crash.

Severity Medium

Remote Yes

Type Arbitrary code execution

Description

live-media before version 2021.08.09 does not handle MPEG-1 or 2 files properly. Sending two successive RTSP SETUP commands for the same track causes a use-after-free and daemon crash.

AVG-2276 live-media 2021.07.20-1 2021.08.09-1 Medium Fixed

http://lists.live555.com/pipermail/live-devel/2021-August/021961.html
http://www.live555.com/liveMedia/public/changelog.txt