Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-10777

Опубликовано: 07 мая 2018
Источник: debian
EPSS Низкий

Описание

Buffer overflow in the WriteMP3GainAPETag function in apetag.c in mp3gain through 1.5.2-r2 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mp3gainfixed1.6.2-2package
mp3gainend-of-lifewheezypackage

Примечания

  • Fixed according to https://sourceforge.net/p/mp3gain/bugs/43/ but still causes crash with ASAN

  • According to the CVE this is caught by FORTIFY_SOURCE, so no real vulnerability.

EPSS

Процентиль: 53%
0.00301
Низкий

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 8 лет назад

Buffer overflow in the WriteMP3GainAPETag function in apetag.c in mp3gain through 1.5.2-r2 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

CVSS3: 7.8
nvd
почти 8 лет назад

Buffer overflow in the WriteMP3GainAPETag function in apetag.c in mp3gain through 1.5.2-r2 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

CVSS3: 7.8
github
больше 3 лет назад

Buffer overflow in the WriteMP3GainAPETag function in apetag.c in mp3gain through 1.5.2-r2 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

EPSS

Процентиль: 53%
0.00301
Низкий