Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-11550

Опубликовано: 31 июл. 2017
Источник: debian
EPSS Низкий

Описание

The id3_ucs4_length function in ucs4.c in libid3tag 0.15.1b allows remote attackers to cause a denial of service (NULL Pointer Dereference and application crash) via a crafted mp3 file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libid3tagfixed0.15.1b-9package

Примечания

  • http://seclists.org/fulldisclosure/2017/Jul/85

  • Addressed by the 11_unknown_encoding.dpatch patch

EPSS

Процентиль: 59%
0.00384
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 8 лет назад

The id3_ucs4_length function in ucs4.c in libid3tag 0.15.1b allows remote attackers to cause a denial of service (NULL Pointer Dereference and application crash) via a crafted mp3 file.

CVSS3: 3.3
redhat
около 8 лет назад

The id3_ucs4_length function in ucs4.c in libid3tag 0.15.1b allows remote attackers to cause a denial of service (NULL Pointer Dereference and application crash) via a crafted mp3 file.

CVSS3: 5.5
nvd
около 8 лет назад

The id3_ucs4_length function in ucs4.c in libid3tag 0.15.1b allows remote attackers to cause a denial of service (NULL Pointer Dereference and application crash) via a crafted mp3 file.

CVSS3: 5.5
msrc
5 месяцев назад

Описание отсутствует

CVSS3: 5.5
github
больше 3 лет назад

The id3_ucs4_length function in ucs4.c in libid3tag 0.15.1b allows remote attackers to cause a denial of service (NULL Pointer Dereference and application crash) via a crafted mp3 file.

EPSS

Процентиль: 59%
0.00384
Низкий