7.5
CVSSv3

CVE-2021-38380

Published: 10/08/2021 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Live555 up to and including 1.08 mishandles huge requests for the same MP3 stream, leading to recursion and s stack-based buffer over-read. An attacker can leverage this to launch a DoS attack.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

live555 live555

Vendor Advisories

live-media before version20210804 mishandles huge requests for the same MP3 stream, leading to recursion and a stack-based buffer over-read An attacker can leverage this to launch a denial of service attack ...