Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-1200

Опубликовано: 19 янв. 2026
Источник: redhat
CVSS3: 6.3
EPSS Низкий

Описание

A flaw was found in the rgaufman/live555 fork of live555. A remote attacker could exploit a segmentation fault, in the increaseBufferTo function. This vulnerability can lead to memory corruption problems and potentially other consequences.

Отчет

This vulnerability is rated Moderate for Red Hat products as it affects the live555 library, which, when used in a server context, could lead to remote code execution due to a segmentation fault. Exploitation requires a service utilizing the vulnerable increaseBufferTo function to be exposed to an attacker.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-824
https://bugzilla.redhat.com/show_bug.cgi?id=2430836live555: live555: Remote Code Execution via segmentation fault in increaseBufferTo function

EPSS

Процентиль: 26%
0.00329
Низкий

6.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.3
ubuntu
6 месяцев назад

A flaw was found in the rgaufman/live555 fork of live555. A remote attacker could exploit a segmentation fault, in the `increaseBufferTo` function. This vulnerability can lead to memory corruption problems and potentially other consequences.

CVSS3: 6.3
nvd
6 месяцев назад

A flaw was found in the rgaufman/live555 fork of live555. A remote attacker could exploit a segmentation fault, in the `increaseBufferTo` function. This vulnerability can lead to memory corruption problems and potentially other consequences.

CVSS3: 6.3
debian
6 месяцев назад

A flaw was found in the rgaufman/live555 fork of live555. A remote att ...

CVSS3: 6.3
github
6 месяцев назад

A flaw was found in the rgaufman/live555 fork of live555. A remote attacker could exploit a segmentation fault, in the `increaseBufferTo` function. This vulnerability can lead to memory corruption problems and potentially other consequences.

EPSS

Процентиль: 26%
0.00329
Низкий

6.3 Medium

CVSS3