mp3gain records
12 published records for vendor mp3gain.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-125 Out-of-bounds Read4
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-787 Out-of-bounds Write3
- CWE-20 Improper Input Validation1
- CWE-476 NULL Pointer Dereference1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
12 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
32Monitor | CVE-2017-14411No exploit | A stack-based buffer overflow was discovered in copy_mp in interface.c in mpglibDBL, as used in MP3Gain version 1.5.2.mp3gain · mp3gain · CWE-787 | High7.8 | — | 1.7% | Sep 12, 2017 |
31Monitor | CVE-2017-14409No exploit | A buffer overflow was discovered in III_dequantize_sample in layer3.c in mpglibDBL, as used in MP3Gain version 1.5.2.mp3gain · mp3gain · CWE-787 | High7.8 | — | 1.6% | Sep 12, 2017 |
31Monitor | CVE-2018-10778No exploit | Read access violation in the III_dequantize_sample function in mpglibDBL/layer3.c in mp3gain through 1.5.2-r2 allows remote attackers to caump3gain · mp3gain · CWE-125 | High7.8 | — | 1.1% | May 7, 2018 |
31Monitor | CVE-2018-10776No exploit | The getbits function in mpglibDBL/common.c in mp3gain through 1.5.2-r2 allows remote attackers to cause a denial of service (segmentation famp3gain · mp3gain · CWE-20 | High7.8 | — | 1.0% | May 7, 2018 |
31Monitor | CVE-2018-10777No exploit | Buffer overflow in the WriteMP3GainAPETag function in apetag.c in mp3gain through 1.5.2-r2 allows remote attackers to cause a denial of servmp3gain · mp3gain · CWE-119 | High7.8 | — | 1.0% | May 7, 2018 |
31Monitor | CVE-2017-14412No exploit | An invalid memory write was discovered in copy_mp in interface.c in mpglibDBL, as used in MP3Gain version 1.5.2.mp3gain · mp3gain · CWE-787 | High7.8 | — | 0.8% | Sep 12, 2017 |
22Monitor | CVE-2017-14408No exploit | A stack-based buffer over-read was discovered in dct36 in layer3.c in mpglibDBL, as used in MP3Gain version 1.5.2.mp3gain · mp3gain · CWE-125 | Medium5.5 | — | 1.1% | Sep 12, 2017 |
22Monitor | CVE-2017-14407No exploit | A stack-based buffer over-read was discovered in filterYule in gain_analysis.c in MP3Gain version 1.5.2.mp3gain · mp3gain · CWE-125 | Medium5.5 | — | 1.1% | Sep 12, 2017 |
22Monitor | CVE-2017-14410No exploit | A buffer over-read was discovered in III_i_stereo in layer3.c in mpglibDBL, as used in MP3Gain version 1.5.2.mp3gain · mp3gain · CWE-125 | Medium5.5 | — | 0.9% | Sep 12, 2017 |
22Monitor | CVE-2017-14406No exploit | A NULL pointer dereference was discovered in sync_buffer in interface.c in mpglibDBL, as used in MP3Gain version 1.5.2.mp3gain · mp3gain · CWE-476 | Medium5.5 | — | 0.9% | Sep 12, 2017 |
22Monitor | CVE-2017-12911No exploit | The "apetag.c" file in MP3Gain 1.5.2.r2 has a vulnerability which results in a stack memory corruption when opening a crafted MP3 file.mp3gain · mp3gain · CWE-119 | Medium5.5 | — | 0.9% | Sep 7, 2017 |
22Monitor | CVE-2017-12912No exploit | The "mpglibDBL/layer3.c" file in MP3Gain 1.5.2.r2 has a vulnerability which results in a read access violation when opening a crafted MP3 fimp3gain · mp3gain · CWE-119 | Medium5.5 | — | 0.7% | Sep 7, 2017 |
- CVE-2017-1441132Monitor
A stack-based buffer overflow was discovered in copy_mp in interface.c in mpglibDBL, as used in MP3Gain version 1.5.2.
HighCVSS 7.8No exploitEPSS 2%mp3gain · mp3gainSep 12, 2017
- CVE-2017-1440931Monitor
A buffer overflow was discovered in III_dequantize_sample in layer3.c in mpglibDBL, as used in MP3Gain version 1.5.2.
HighCVSS 7.8No exploitEPSS 2%mp3gain · mp3gainSep 12, 2017
- CVE-2018-1077831Monitor
Read access violation in the III_dequantize_sample function in mpglibDBL/layer3.c in mp3gain through 1.5.2-r2 allows remote attackers to cau
HighCVSS 7.8No exploitEPSS 1%mp3gain · mp3gainMay 7, 2018
- CVE-2018-1077631Monitor
The getbits function in mpglibDBL/common.c in mp3gain through 1.5.2-r2 allows remote attackers to cause a denial of service (segmentation fa
HighCVSS 7.8No exploitEPSS 1%mp3gain · mp3gainMay 7, 2018
- CVE-2018-1077731Monitor
Buffer overflow in the WriteMP3GainAPETag function in apetag.c in mp3gain through 1.5.2-r2 allows remote attackers to cause a denial of serv
HighCVSS 7.8No exploitEPSS 1%mp3gain · mp3gainMay 7, 2018
- CVE-2017-1441231Monitor
An invalid memory write was discovered in copy_mp in interface.c in mpglibDBL, as used in MP3Gain version 1.5.2.
HighCVSS 7.8No exploitEPSS 1%mp3gain · mp3gainSep 12, 2017
- CVE-2017-1440822Monitor
A stack-based buffer over-read was discovered in dct36 in layer3.c in mpglibDBL, as used in MP3Gain version 1.5.2.
MediumCVSS 5.5No exploitEPSS 1%mp3gain · mp3gainSep 12, 2017
- CVE-2017-1440722Monitor
A stack-based buffer over-read was discovered in filterYule in gain_analysis.c in MP3Gain version 1.5.2.
MediumCVSS 5.5No exploitEPSS 1%mp3gain · mp3gainSep 12, 2017
- CVE-2017-1441022Monitor
A buffer over-read was discovered in III_i_stereo in layer3.c in mpglibDBL, as used in MP3Gain version 1.5.2.
MediumCVSS 5.5No exploitEPSS 1%mp3gain · mp3gainSep 12, 2017
- CVE-2017-1440622Monitor
A NULL pointer dereference was discovered in sync_buffer in interface.c in mpglibDBL, as used in MP3Gain version 1.5.2.
MediumCVSS 5.5No exploitEPSS 1%mp3gain · mp3gainSep 12, 2017
- CVE-2017-1291122Monitor
The "apetag.c" file in MP3Gain 1.5.2.r2 has a vulnerability which results in a stack memory corruption when opening a crafted MP3 file.
MediumCVSS 5.5No exploitEPSS 1%mp3gain · mp3gainSep 7, 2017
- CVE-2017-1291222Monitor
The "mpglibDBL/layer3.c" file in MP3Gain 1.5.2.r2 has a vulnerability which results in a read access violation when opening a crafted MP3 fi
MediumCVSS 5.5No exploitEPSS 1%mp3gain · mp3gainSep 7, 2017