live555 live555 CVE Vulnerabilities (7)

CVEs: 7 CPE versions: View versions table

Summary

This page lists publicly disclosed CVE vulnerabilities affecting live555 live555 (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.

Showing 17 of 7 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2023-37117 A heap-use-after-free vulnerability was found in live555 version 2023.05.10 while handling the SETUP. [email protected] 9.8 0.25% 2024-01-12 2024-11-21
CVE-2021-41396 Live555 through 1.08 does not handle socket connections properly. A huge number of incoming socket connections in a short time invokes the error-handling module, in which a heap-based buffer overflow happens. An attacker can leverage this to launch a DoS attack. [email protected] 7.5 0.43% 2022-07-12 2024-11-21
CVE-2021-39283 liveMedia/FramedSource.cpp in Live555 through 1.08 allows an assertion failure and application exit via multiple SETUP and PLAY commands. [email protected] 5.5 0.21% 2021-08-18 2024-11-21
CVE-2021-39282 Live555 through 1.08 has a memory leak in AC3AudioStreamParser for AC3 files. [email protected] 7.5 0.30% 2021-08-18 2024-11-21
CVE-2021-38382 Live555 through 1.08 does not handle Matroska and Ogg files properly. Sending two successive RTSP SETUP commands for the same track causes a Use-After-Free and daemon crash. [email protected] 6.5 0.22% 2021-08-10 2024-11-21
CVE-2021-38381 Live555 through 1.08 does not handle MPEG-1 or 2 files properly. Sending two successive RTSP SETUP commands for the same track causes a Use-After-Free and daemon crash. [email protected] 6.5 0.22% 2021-08-10 2024-11-21
CVE-2021-38380 Live555 through 1.08 mishandles huge requests for the same MP3 stream, leading to recursion and s stack-based buffer over-read. An attacker can leverage this to launch a DoS attack. [email protected] 7.5 0.28% 2021-08-10 2024-11-21
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence