[Live-devel] CVE-2019-773{3, 2}: unrestricted memmove and memory leak leading to DoS

Hugo Lefeuvre hle at owl.eu.com
Thu May 2 09:01:30 PDT 2019


Dear live555 developers,

It appears that two security issues, CVE-2019-7732 and CVE-2019-7733, have
been reported to the GitHub clone of live555[0][1]. I don't think they
were reported here.

Are you planning to address these issues in future releases?

Thanks for your work.

cheers,
Hugo

[0] https://github.com/rgaufman/live555/issues/21
[1] https://github.com/rgaufman/live555/issues/20

-- 
                Hugo Lefeuvre (hle)    |    www.owl.eu.com
RSA4096_ 360B 03B3 BF27 4F4D 7A3F D5E8 14AA 1EB8 A247 3DFD
ed25519_ 37B2 6D38 0B25 B8A2 6B9F 3A65 A36F 5357 5F2D DC4C
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 488 bytes
Desc: not available
URL: <http://lists.live555.com/pipermail/live-devel/attachments/20190502/27ebd0f6/attachment.bin>


More information about the live-devel mailing list