Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3c35-prjf-p48q

Опубликовано: 20 янв. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.5

Описание

dr_flac, an audio decoder within the dr_libs toolset, contains an integer overflow vulnerability flaw due to trusting the totalPCMFrameCount field from FLAC metadata before calculating buffer size, allowing an attacker with a specially crafted file to perform DoS against programs using the tool.

dr_flac, an audio decoder within the dr_libs toolset, contains an integer overflow vulnerability flaw due to trusting the totalPCMFrameCount field from FLAC metadata before calculating buffer size, allowing an attacker with a specially crafted file to perform DoS against programs using the tool.

EPSS

Процентиль: 5%
0.00153
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
7 месяцев назад

dr_flac, an audio decoder within the dr_libs toolset, contains an integer overflow vulnerability flaw due to trusting the totalPCMFrameCount field from FLAC metadata before calculating buffer size, allowing an attacker with a specially crafted file to perform DoS against programs using the tool.

CVSS3: 5
redhat
7 месяцев назад

dr_flac, an audio decoder within the dr_libs toolset, contains an integer overflow vulnerability flaw due to trusting the totalPCMFrameCount field from FLAC metadata before calculating buffer size, allowing an attacker with a specially crafted file to perform DoS against programs using the tool.

CVSS3: 5.5
nvd
7 месяцев назад

dr_flac, an audio decoder within the dr_libs toolset, contains an integer overflow vulnerability flaw due to trusting the totalPCMFrameCount field from FLAC metadata before calculating buffer size, allowing an attacker with a specially crafted file to perform DoS against programs using the tool.

CVSS3: 5.5
debian
7 месяцев назад

dr_flac, an audio decoder within the dr_libs toolset, contains an inte ...

EPSS

Процентиль: 5%
0.00153
Низкий

5.5 Medium

CVSS3