Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2008-1423

Опубликовано: 14 мая 2008
Источник: redhat
EPSS Низкий

Описание

Integer overflow in a certain quantvals and quantlist calculation in Xiph.org libvorbis 1.2.0 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted OGG file with a large virtual space for its codebook, which triggers a heap overflow.

Дополнительная информация

Статус:

Important
Дефект:
CWE-190->CWE-122
https://bugzilla.redhat.com/show_bug.cgi?id=440709vorbis: integer oveflow caused by huge codebooks

EPSS

Процентиль: 91%
0.06468
Низкий

Связанные уязвимости

ubuntu
около 17 лет назад

Integer overflow in a certain quantvals and quantlist calculation in Xiph.org libvorbis 1.2.0 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted OGG file with a large virtual space for its codebook, which triggers a heap overflow.

nvd
около 17 лет назад

Integer overflow in a certain quantvals and quantlist calculation in Xiph.org libvorbis 1.2.0 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted OGG file with a large virtual space for its codebook, which triggers a heap overflow.

debian
около 17 лет назад

Integer overflow in a certain quantvals and quantlist calculation in X ...

github
около 3 лет назад

Integer overflow in a certain quantvals and quantlist calculation in Xiph.org libvorbis 1.2.0 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted OGG file with a large virtual space for its codebook, which triggers a heap overflow.

oracle-oval
около 17 лет назад

ELSA-2008-0270: libvorbis security update (IMPORTANT)

EPSS

Процентиль: 91%
0.06468
Низкий