CVE-2024-56807: Media Streaming add-on
Published Feb 11, 2026
·Updated
An out-of-bounds read vulnerability has been reported to affect Media Streaming add-on. If an attacker gains local network access, they can then exploit the vulnerability to obtain secret data.
We have already fixed the vulnerability in the following version: Media Streaming add-on 500.1.1.6 ( 2024/08/02 ) and later
Affected Software
2 affected components
Media Streaming add-on<500.1.1.6
QNAP Media Streaming add-on>=500.1.1.0<500.1.1.6
Remediation
Information
We have already fixed the vulnerability in the following version:
Media Streaming add-on 500.1.1.6 ( 2024/08/02 ) and later
Event History
Feb 11, 2026
CVE Published
via MITRE·12:20 PM
Data Sourced
via MITRE·12:20 PM
RemedyDescriptionWeakness
Data Sourced
via NVD·01:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-56807?
CVE-2024-56807 is characterized as a medium severity out-of-bounds read vulnerability.
2
How do I fix CVE-2024-56807?
To fix CVE-2024-56807, update the Media Streaming add-on to version 500.1.1.6 or later.
3
What can an attacker do with CVE-2024-56807?
An attacker with local network access can exploit CVE-2024-56807 to obtain secret data.
4
Which versions of the Media Streaming add-on are affected by CVE-2024-56807?
CVE-2024-56807 affects versions of the Media Streaming add-on up to 500.1.1.6.
5
Is local network access required to exploit CVE-2024-56807?
Yes, local network access is required to successfully exploit CVE-2024-56807.