CVE-2025-65408: Null Pointer Dereference
A NULL pointer dereference in the ADTSAudioFileServerMediaSubsession::createNewRTPSink() function of Live555 Streaming Media v2018.09.02 allows attackers to cause a Denial of Service (DoS) via supplying a crafted ADTS file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-65408?
CVE-2025-65408 is classified as a high severity vulnerability due to its potential to cause a Denial of Service (DoS).
How do I fix CVE-2025-65408?
To fix CVE-2025-65408, upgrade to the latest version of Live555 Streaming Media where the NULL pointer dereference has been resolved.
What impact does CVE-2025-65408 have on affected systems?
CVE-2025-65408 can lead to a Denial of Service by crashing the media server when a crafted ADTS file is processed.
Which versions of Live555 Streaming Media are affected by CVE-2025-65408?
CVE-2025-65408 affects Live555 Streaming Media version 2018.09.02 and possibly earlier versions.
How can attackers exploit CVE-2025-65408?
Attackers can exploit CVE-2025-65408 by supplying a specially crafted ADTS file to the affected media server, causing it to crash.