CVE-2017-9869
- EPSS 0.81%
- Veröffentlicht 25.06.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The II_step_one function in layer2.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted audio file.
CVE-2017-9870
- EPSS 0.4%
- Veröffentlicht 25.06.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The III_i_stereo function in layer3.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted audio file that is mishandled i...
CVE-2017-9871
- EPSS 0.23%
- Veröffentlicht 25.06.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The III_i_stereo function in layer3.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other...
CVE-2017-9872
- EPSS 3.4%
- Veröffentlicht 25.06.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The III_dequantize_sample function in layer3.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecif...
CVE-2017-8419
- EPSS 0.96%
- Veröffentlicht 02.05.2017 14:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
LAME through 3.99.5 relies on the signed integer data type for values in a WAV or AIFF header, which allows remote attackers to cause a denial of service (stack-based buffer overflow or heap-based buffer overflow) or possibly have unspecified other i...