cve/2007/CVE-2007-6626.md
2024-05-26 14:27:05 +02:00

899 B

CVE-2007-6626

Description

Multiple buffer overflows in the RTSP_valid_response_msg function in RTSP_state_machine.c in LScube Feng 0.1.15 and earlier allow remote attackers to execute arbitrary code via (1) a long first line of a response, as demonstrated by a long VER line; or (2) a long second line of a response, as demonstrated by a message that follows a RETURN line.

POC

Reference

Github

No PoCs found on GitHub currently.