CVE Database
/

CVE-2007-6631

Back to search

CVE-2007-6631

Published: Jan 4, 2008

Modified: Aug 7, 2024

PUBLISHED

Description

Multiple buffer overflows in LScube libnemesi 0.6.4-rc1 and earlier allow remote attackers to execute arbitrary code via (1) a reply that begins with a long version string, which triggers an overflow in handle_rtsp_pkt in rtsp_handlers.c; long headers that trigger overflows in (2) send_pause_request, (3) send_play_request, (4) send_setup_request, or (5) send_teardown_request in rtsp_send.c, as demonstrated by the Content-Base header; or a long Transport header, which triggers an overflow in (6) get_transport_str_sctp, (7) get_transport_str_tcp, or (8) get_transport_str_udp in rtsp_transport.c.

VendorProductVersions

n/a

n/a

affected
n/a

References

42820
vdb-entry
x_refsource_OSVDB
3513
third-party-advisory
x_refsource_SREASON
42822
vdb-entry
x_refsource_OSVDB
ADV-2008-0010
vdb-entry
x_refsource_VUPEN
27048
vdb-entry
x_refsource_BID
42821
vdb-entry
x_refsource_OSVDB

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now