cpe:/a:live555:media_server:2007.11.01 CVE-2007-6036 2007-11-20T06:46:00.000-05:00 2017-07-28T21:34:00.257-04:00 7.1 NETWORK MEDIUM NONE NONE NONE COMPLETE http://nvd.nist.gov 2007-11-20T14:45:00.000-05:00 BUGTRAQ 20071118 Crash in LIVE555 Media Server 2007.11.01 BID 26488 SECUNIA 27711 SECUNIA 29356 VUPEN ADV-2007-3939 GENTOO GLSA-200803-22 MISC http://aluigi.altervista.org/adv/live555x-adv.txt CONFIRM http://www.live555.com/liveMedia/public/changelog.txt XF live555-rtsp-dos(38542) The parseRTSPRequestString function in LIVE555 Media Server 2007.11.01 and earlier allows remote attackers to cause a denial of service (daemon crash) via a short RTSP query, which causes a negative number to be used during memory allocation.