Wind River Support Network

HomeDefectsLIN9-4790
Acknowledged

LIN9-4790 : Security Advisory - mpg123 - CVE-2017-9545

Created: Jul 27, 2017    Updated: May 29, 2018
Found In Version: 9.0.0.8
Severity: Standard
Applicable for: Wind River Linux 9
Component/s: Userspace

Description

The next_text function in src/libmpg123/id3.c in mpg123 1.24.0 allows remote attackers to cause a denial of service (buffer over-read) via a crafted mp3 file.

https://nvd.nist.gov/vuln/detail/CVE-2017-9545

CVEs


Live chat
Online