Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-3106

Опубликовано: 26 июл. 2007
Источник: ubuntu
Приоритет: untriaged
CVSS2: 6.8

Описание

lib/info.c in libvorbis 1.1.2, and possibly other versions before 1.2.0, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via invalid (1) blocksize_0 and (2) blocksize_1 values, which trigger a "heap overwrite" in the _01inverse function in res0.c. NOTE: this issue has been RECAST so that CVE-2007-4029 handles additional vectors.

РелизСтатусПримечание
dapper

released

1.1.2-0ubuntu2.2
devel

not-affected

edgy

released

1.1.2-1ubuntu1.2
feisty

released

1.1.2.dfsg-1.2ubuntu2
upstream

released

1.2.0

Показывать по

6.8 Medium

CVSS2

Связанные уязвимости

redhat
почти 18 лет назад

lib/info.c in libvorbis 1.1.2, and possibly other versions before 1.2.0, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via invalid (1) blocksize_0 and (2) blocksize_1 values, which trigger a "heap overwrite" in the _01inverse function in res0.c. NOTE: this issue has been RECAST so that CVE-2007-4029 handles additional vectors.

nvd
почти 18 лет назад

lib/info.c in libvorbis 1.1.2, and possibly other versions before 1.2.0, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via invalid (1) blocksize_0 and (2) blocksize_1 values, which trigger a "heap overwrite" in the _01inverse function in res0.c. NOTE: this issue has been RECAST so that CVE-2007-4029 handles additional vectors.

debian
почти 18 лет назад

lib/info.c in libvorbis 1.1.2, and possibly other versions before 1.2. ...

github
около 3 лет назад

lib/info.c in libvorbis 1.1.2, and possibly other versions before 1.2.0, allows context-dependent attackers to cause a denial of service and possibly execute arbitrary code via invalid (1) blocksize_0 and (2) blocksize_1 values, which trigger a "heap overwrite" in the _01inverse function in res0.c. NOTE: this issue has been RECAST so that CVE-2007-4029 handles additional vectors.

oracle-oval
почти 18 лет назад

ELSA-2007-0845: Important:libvorbis security update (NA)

6.8 Medium

CVSS2