Wind River Support Network

HomeDefectsLIN8-7197
Not to be fixed

LIN8-7197 : Security Advisory - mpg123 - CVE-2017-9545

Created: Jul 27, 2017    Updated: Oct 26, 2018
Resolved Date: Oct 24, 2018
Found In Version: 8.0.0.19
Severity: Standard
Applicable for: Wind River Linux 8
Component/s: Userspace

Description

The next_text function in src/libmpg123/id3.c in mpg123 1.24.0 allows remote attackers to cause a denial of service (buffer over-read) via a crafted mp3 file.

https://nvd.nist.gov/vuln/detail/CVE-2017-9545

CVEs


Live chat
Online