Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-11333

Опубликовано: 31 июл. 2017
Источник: debian

Описание

The vorbis_analysis_wrote function in lib/block.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (OOM) via a crafted wav file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libvorbisfixed1.3.5-4.1package

Примечания

  • http://seclists.org/fulldisclosure/2017/Jul/82

  • https://gitlab.xiph.org/xiph/vorbis/issues/2332

  • Fixed by: https://gitlab.xiph.org/xiph/vorbis/commit/a79ec216cd119069c68b8f3542c6a425a74ab993

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 8 лет назад

The vorbis_analysis_wrote function in lib/block.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (OOM) via a crafted wav file.

CVSS3: 3.3
redhat
больше 8 лет назад

The vorbis_analysis_wrote function in lib/block.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (OOM) via a crafted wav file.

CVSS3: 5.5
nvd
больше 8 лет назад

The vorbis_analysis_wrote function in lib/block.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (OOM) via a crafted wav file.

CVSS3: 5.5
github
больше 3 лет назад

The vorbis_analysis_wrote function in lib/block.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (OOM) via a crafted wav file.