CVE-2025-65407: Use After Free
Published Dec 1, 2025
·Updated
A use-after-free in the MPEG1or2Demux::newElementaryStream() function of Live555 Streaming Media v2018.09.02 allows attackers to cause a Denial of Service (DoS) via supplying a crafted MPEG Program stream.
Affected Software
2 affected components
Live555 Streaming Media
Live555 Streaming Media=2018-09-02
Event History
Dec 1, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·07:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-65407?
CVE-2025-65407 has a high severity due to its potential to cause Denial of Service attacks.
2
How do I fix CVE-2025-65407?
To fix CVE-2025-65407, update Live555 Streaming Media to the latest version where this vulnerability has been patched.
3
What software is affected by CVE-2025-65407?
CVE-2025-65407 affects Live555 Streaming Media version 2018.09.02.
4
What type of vulnerability is CVE-2025-65407?
CVE-2025-65407 is a use-after-free vulnerability.
5
What impact does CVE-2025-65407 have?
CVE-2025-65407 can potentially lead to Denial of Service conditions when a crafted MPEG Program stream is supplied.