Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-12678

Опубликовано: 08 авг. 2017
Источник: debian

Описание

In TagLib 1.11.1, the rebuildAggregateFrames function in id3v2framefactory.cpp has a pointer to cast vulnerability, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted audio file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
taglibfixed1.11.1+dfsg.1-0.2package
taglibnot-affectedjessiepackage
taglibnot-affectedwheezypackage
silverjukenot-affectedpackage

Примечания

  • https://github.com/taglib/taglib/issues/829

  • https://github.com/taglib/taglib/commit/cb9f07d9dcd791b63e622da43f7b232adaec0a9a

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 8 лет назад

In TagLib 1.11.1, the rebuildAggregateFrames function in id3v2framefactory.cpp has a pointer to cast vulnerability, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted audio file.

CVSS3: 3.3
redhat
больше 8 лет назад

In TagLib 1.11.1, the rebuildAggregateFrames function in id3v2framefactory.cpp has a pointer to cast vulnerability, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted audio file.

CVSS3: 8.8
nvd
больше 8 лет назад

In TagLib 1.11.1, the rebuildAggregateFrames function in id3v2framefactory.cpp has a pointer to cast vulnerability, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted audio file.

CVSS3: 8.8
msrc
около 4 лет назад

In TagLib 1.11.1 the rebuildAggregateFrames function in id3v2framefactory.cpp has a pointer to cast vulnerability which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted audio file.

suse-cvrf
больше 8 лет назад

Security update for taglib