VYPR

Fenice

by Fenice

CVEs (2)

  • CVE-2006-2022Apr 25, 2006
    risk 0.04cvss epss 0.15

    Buffer overflow in the parse_url function in the RTSP module (rtsp/parse_url.c) in Fenice 1.10 and earlier allows remote attackers to execute arbitrary code via a long URL.

  • CVE-2006-2023Apr 25, 2006
    risk 0.00cvss epss 0.02

    Integer overflow in the RTSP_msg_len function in rtsp/RTSP_msg_len.c in Fenice 1.10 and earlier allows remote attackers to cause a denial of service (application crash) via a large HTTP Content-Length value, which leads to an invalid memory access.