Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jhqp-j8gr-8fxw

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Integer underflow in the Huffman decoding functionality (pvmp3_huffman_parsing.cpp) in OpenCORE 2.0 and earlier allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a crafted MP3 file that triggers heap corruption.

Integer underflow in the Huffman decoding functionality (pvmp3_huffman_parsing.cpp) in OpenCORE 2.0 and earlier allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a crafted MP3 file that triggers heap corruption.

EPSS

Процентиль: 84%
0.02138
Низкий

Связанные уязвимости

nvd
почти 17 лет назад

Integer underflow in the Huffman decoding functionality (pvmp3_huffman_parsing.cpp) in OpenCORE 2.0 and earlier allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a crafted MP3 file that triggers heap corruption.

EPSS

Процентиль: 84%
0.02138
Низкий