Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-6278

Опубликовано: 07 дек. 2007
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 9.3

Описание

Free Lossless Audio Codec (FLAC) libFLAC before 1.2.1 allows user-assisted remote attackers to force a client to download arbitrary files via the MIME-Type URL flag (-->) for the FLAC image file in a crafted .FLAC file.

РелизСтатусПримечание
dapper

not-affected

1.1.2-3ubuntu1.1
devel

not-affected

1.2.1
edgy

not-affected

1.1.2-5ubuntu1.1
feisty

not-affected

1.1.2-5ubuntu2.1
gutsy

released

1.1.4-3ubuntu1.1
upstream

released

1.2.1

Показывать по

Ссылки на источники

EPSS

Процентиль: 78%
0.01143
Низкий

9.3 Critical

CVSS2

Связанные уязвимости

redhat
почти 18 лет назад

Free Lossless Audio Codec (FLAC) libFLAC before 1.2.1 allows user-assisted remote attackers to force a client to download arbitrary files via the MIME-Type URL flag (-->) for the FLAC image file in a crafted .FLAC file.

nvd
почти 18 лет назад

Free Lossless Audio Codec (FLAC) libFLAC before 1.2.1 allows user-assisted remote attackers to force a client to download arbitrary files via the MIME-Type URL flag (-->) for the FLAC image file in a crafted .FLAC file.

debian
почти 18 лет назад

Free Lossless Audio Codec (FLAC) libFLAC before 1.2.1 allows user-assi ...

github
больше 3 лет назад

Free Lossless Audio Codec (FLAC) libFLAC before 1.2.1 allows user-assisted remote attackers to force a client to download arbitrary files via the MIME-Type URL flag (-->) for the FLAC image file in a crafted .FLAC file.

EPSS

Процентиль: 78%
0.01143
Низкий

9.3 Critical

CVSS2