Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-41147

Опубликовано: 04 мар. 2025
Источник: debian
EPSS Низкий

Описание

An out-of-bounds write vulnerability exists in the ma_dr_flac__decode_samples__lpc functionality of Miniaudio miniaudio v0.11.21. A specially crafted .flac file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
miniaudiofixed0.11.22+dfsg-1package

Примечания

  • https://talosintelligence.com/vulnerability_reports/TALOS-2024-2063

  • https://github.com/mackron/miniaudio/issues/961

  • Fixed by: https://github.com/mackron/miniaudio/commit/ee506b17ea25c6bcb58d79700cf0c015a2ad1b3e (0.11.22)

EPSS

Процентиль: 45%
0.00228
Низкий

Связанные уязвимости

CVSS3: 7.7
ubuntu
11 месяцев назад

An out-of-bounds write vulnerability exists in the ma_dr_flac__decode_samples__lpc functionality of Miniaudio miniaudio v0.11.21. A specially crafted .flac file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 7.7
nvd
11 месяцев назад

An out-of-bounds write vulnerability exists in the ma_dr_flac__decode_samples__lpc functionality of Miniaudio miniaudio v0.11.21. A specially crafted .flac file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

CVSS3: 7.7
github
11 месяцев назад

An out-of-bounds write vulnerability exists in the ma_dr_flac__decode_samples__lpc functionality of Miniaudio miniaudio v0.11.21. A specially crafted .flac file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.

EPSS

Процентиль: 45%
0.00228
Низкий