Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-9638

Опубликовано: 23 янв. 2015
Источник: debian
EPSS Низкий

Описание

oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a WAV file with the number of channels set to zero.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
vorbis-toolsfixed1.4.0-7package
vorbis-toolsfixed1.4.0-6+deb8u1jessiepackage
opus-toolsfixed0.1.10-1package

Примечания

  • https://trac.xiph.org/ticket/2137

  • Fixed by: https://github.com/mark4o/opus-tools/commit/8c412e619b83eb6dd32191909cf6672e93e5802e

  • No security impact

  • proposed patch: http://lists.xiph.org/pipermail/vorbis-dev/2015-February/020423.html

EPSS

Процентиль: 79%
0.0136
Низкий

Связанные уязвимости

ubuntu
больше 10 лет назад

oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a WAV file with the number of channels set to zero.

redhat
больше 10 лет назад

oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a WAV file with the number of channels set to zero.

nvd
больше 10 лет назад

oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a WAV file with the number of channels set to zero.

msrc
больше 3 лет назад

Описание отсутствует

github
около 3 лет назад

oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a WAV file with the number of channels set to zero.

EPSS

Процентиль: 79%
0.0136
Низкий