PT-2025-48490 · Live555 · Live555 Streaming Media

Heng Zhang

·

Published

2025-12-01

·

Updated

2025-12-23

·

CVE-2025-65404

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Live555 Streaming Media version 2018.09.02
Description A buffer overflow exists in the getSideInfo2() function of Live555 Streaming Media. This issue allows attackers to cause a Denial of Service (DoS) by sending a specially crafted MP3 stream. The vulnerability does not require authentication.
Recommendations Upgrade to the latest Live555 Streaming Media version. Block untrusted audio streams.

Exploit

Fix

DoS

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2025-65404

Affected Products

Live555 Streaming Media