Categories: Vulnerability

Critical Code Execution Vulnerability Found in Libraries Used By VLC and Other Media Players

A critical code execution vulnerability identified in LIVE555 Streaming Media RTSP Server library used by VLC and other media players.

The vulnerability exists in the HTTP packet-parsing functionality of LIVE555 RTSP Server library, an attacker can send a crafted malicious packet to trigger the vulnerability and cause a stack-based buffer overflow, resulting in code execution.

The LIVE555 Streaming Media contains a set of open-source C++ libraries that developed by Live Networks Inc for streaming multimedia. The libraries support for a set of streaming standards such as RTSP/RTCP/RTSP/SIP/RTP that supports both clients and server.

LIVE555 Media Libraries used by most popular media players like such as VLC and MPlayer and multitude of embedded devices such as cameras.

The vulnerability resides in the function that parses HTTP headers for tunneling RTSP over HTTP. An attacker may create a packet containing multiple “Accept:” or “x-sessioncookie” strings which could cause a stack buffer overflow in the function “lookForHeader.” reads Talos vulnerability report.

The vulnerability was found in Live Networks LIVE555 Media Server, version 0.92 and the earlier versions. It can be tracked as CVE-2018-4013.

Cisco Talos has reported the vulnerability to Live Networks on October 10 and the vendor issued security fix on 17th October.

Related Read

Tumblr Fixes Critical Security Bug That Exposes User Account Details

DOM-based XSS Vulnerability Affected 685 Million Users of Tinder, Shopify, Western Union, and Imgur

Facebook Now Revealed Hackers Stolen 29 Million Facebook Users Personal Data

AddThis Website Tools
Gurubaran

Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Recent Posts

Top Ransomware Groups Target Financial Sector, 406 Incidents Revealed

Flashpoint analysts have reported that between April 2024 and April 2025, the financial sector emerged…

12 hours ago

Agenda Ransomware Group Enhances Tactics with SmokeLoader and NETXLOADER

The Agenda ransomware group, also known as Qilin, has been reported to intensify its attacks…

12 hours ago

SpyCloud Analysis Reveals 94% of Fortune 50 Companies Have Employee Data Exposed in Phishing Attacks

SpyCloud, the leading identity threat protection company, today released an analysis of nearly 6 million…

13 hours ago

PoC Tool Released to Detect Servers Affected by Critical Apache Parquet Vulnerability

F5 Labs has released a new proof-of-concept (PoC) tool designed to help organizations detect servers…

14 hours ago

Healthcare Sector Becomes a Major Target for Cyber Attacks in 2025

The healthcare sector has emerged as a prime target for cyber attackers, driven by the…

14 hours ago

SysAid ITSM Vulnerabilities Enables Pre-Auth Remote Command Execution

Security researchers have disclosed a chain of critical vulnerabilities affecting SysAid ITSM’s On-Premise solution, enabling…

15 hours ago