mpg123 kayıtları
mpg123 üreticisine ait 16 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 8
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-125 Out-of-bounds Read4
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-189 Numeric Errors1
- CWE-190 Integer Overflow or Wraparound1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
16 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
44Planlayın | CVE-2004-1284Kavram kanıtı | Buffer overflow in the find_next_file function in playlist.c for mpg123 0.59r allows remote attackers to execute arbitrary code via a craftempg123 · mpg123 | Kritik10,0 | — | %14,5 | 10 Oca 2005 |
42Planlayın | CVE-2004-0982İstismar yok | Buffer overflow in the getauthfromURL function in httpget.c in mpg123 pre0.59s and mpg123 0.59r could allow remote attackers or local users mpg123 · mpg123 | Kritik10,0 | — | %6,5 | 9 Şub 2005 |
42Planlayın | CVE-2009-1301İstismar yok | Integer signedness error in the store_id3_text function in the ID3v2 code in mpg123 before 1.7.2 allows remote attackers to cause a denial ompg123 · mpg123 · CWE-189 | Kritik10,0 | — | %5,4 | 16 Nis 2009 |
34İzleyin | CVE-2003-0865Kavram kanıtı | Heap-based buffer overflow in readstring of httpget.c for mpg123 0.59r and 0.59s allows remote attackers to execute arbitrary code via a lonmpg123 · mpg123 | Yüksek7,5 | — | %14,5 | 17 Kas 2003 |
34İzleyin | CVE-2017-12839İstismar yok | A heap-based buffer over-read in the getbits function in src/libmpg123/getbits.h in mpg123 through 1.25.5 allows remote attackers to cause ampg123 · mpg123 · CWE-125 | Yüksek8,3 | — | %2,9 | 9 May 2019 |
32İzleyin | CVE-2006-3355Kavram kanıtı | Heap-based buffer overflow in httpdget.c in mpg123 before 0.59s-rll allows remote attackers to execute arbitrary code via a long URL, which mpg123 · mpg123 | Yüksek7,5 | — | %6,5 | 6 Tem 2006 |
31İzleyin | CVE-2004-0805İstismar yok | Buffer overflow in layer2.c in mpg123 0.59r and possibly mpg123 0.59s allows remote attackers to execute arbitrary code via a certain (1) mpmpg123 · mpg123 | Yüksek7,5 | — | %3,8 | 23 Ara 2004 |
31İzleyin | CVE-2003-0577İstismar yok | mpg123 0.59r allows remote attackers to cause a denial of service and possibly execute arbitrary code via an MP3 file with a zero bitrate, wmpg123 · mpg123 | Yüksek7,5 | — | %3,7 | 18 Ağu 2003 |
31İzleyin | CVE-2004-0991İstismar yok | Buffer overflow in mpg123 before 0.59s-r9 allows remote attackers to execute arbitrary code via frame headers in MP2 or MP3 files.mpg123 · mpg123 | Yüksek7,5 | — | %3,6 | 11 Oca 2005 |
31İzleyin | CVE-2014-9497İstismar yok | Buffer overflow in mpg123 before 1.18.0.mpg123 · mpg123 · CWE-119 | Yüksek7,5 | — | %2,3 | 29 Ağu 2017 |
30İzleyin | CVE-2017-10683İstismar yok | In mpg123 1.25.0, there is a heap-based buffer over-read in the convert_latin1 function in libmpg123/id3.c.mpg123 · mpg123 · CWE-125 | Yüksek7,5 | — | %1,2 | 29 Haz 2017 |
26İzleyin | CVE-2006-1655İstismar yok | Multiple buffer overflows in mpg123 0.59r allow user-assisted attackers to trigger a segmentation fault and possibly have other impacts via mpg123 · mpg123 | Orta6,5 | — | %1,6 | 6 Nis 2006 |
22İzleyin | CVE-2017-11126İstismar yok | The III_i_stereo function in libmpg123/layer3.c in mpg123 through 1.25.1 allows remote attackers to cause a denial of service (buffer over-rmpg123 · mpg123 · CWE-125 | Orta5,5 | — | %1,4 | 9 Tem 2017 |
22İzleyin | CVE-2017-12797İstismar yok | Integer overflow in the INT123_parse_new_id3 function in the ID3 parser in mpg123 before 1.25.5 on 32-bit platforms allows remote attackers mpg123 · mpg123 · CWE-190 | Orta5,5 | — | %1,2 | 29 Ağu 2017 |
22İzleyin | CVE-2017-9545İstismar yok | The next_text function in src/libmpg123/id3.c in mpg123 1.24.0 allows remote attackers to cause a denial of service (buffer over-read) via ampg123 · mpg123 · CWE-125 | Orta5,5 | — | %1,2 | 27 Tem 2017 |
17İzleyin | CVE-2007-0578İstismar yok | The http_open function in httpget.c in mpg123 before 0.64 allows remote attackers to cause a denial of service (infinite loop) by closing thmpg123 · mpg123 | Orta4,3 | — | %1,5 | 30 Oca 2007 |
- CVE-2004-128444Planlayın
Buffer overflow in the find_next_file function in playlist.c for mpg123 0.59r allows remote attackers to execute arbitrary code via a crafte
KritikCVSS 10,0Kavram kanıtıEPSS %14mpg123 · mpg12310 Oca 2005
- CVE-2004-098242Planlayın
Buffer overflow in the getauthfromURL function in httpget.c in mpg123 pre0.59s and mpg123 0.59r could allow remote attackers or local users
KritikCVSS 10,0İstismar yokEPSS %7mpg123 · mpg1239 Şub 2005
- CVE-2009-130142Planlayın
Integer signedness error in the store_id3_text function in the ID3v2 code in mpg123 before 1.7.2 allows remote attackers to cause a denial o
KritikCVSS 10,0İstismar yokEPSS %5mpg123 · mpg12316 Nis 2009
- CVE-2003-086534İzleyin
Heap-based buffer overflow in readstring of httpget.c for mpg123 0.59r and 0.59s allows remote attackers to execute arbitrary code via a lon
YüksekCVSS 7,5Kavram kanıtıEPSS %15mpg123 · mpg12317 Kas 2003
- CVE-2017-1283934İzleyin
A heap-based buffer over-read in the getbits function in src/libmpg123/getbits.h in mpg123 through 1.25.5 allows remote attackers to cause a
YüksekCVSS 8,3İstismar yokEPSS %3mpg123 · mpg1239 May 2019
- CVE-2006-335532İzleyin
Heap-based buffer overflow in httpdget.c in mpg123 before 0.59s-rll allows remote attackers to execute arbitrary code via a long URL, which
YüksekCVSS 7,5Kavram kanıtıEPSS %7mpg123 · mpg1236 Tem 2006
- CVE-2004-080531İzleyin
Buffer overflow in layer2.c in mpg123 0.59r and possibly mpg123 0.59s allows remote attackers to execute arbitrary code via a certain (1) mp
YüksekCVSS 7,5İstismar yokEPSS %4mpg123 · mpg12323 Ara 2004
- CVE-2003-057731İzleyin
mpg123 0.59r allows remote attackers to cause a denial of service and possibly execute arbitrary code via an MP3 file with a zero bitrate, w
YüksekCVSS 7,5İstismar yokEPSS %4mpg123 · mpg12318 Ağu 2003
- CVE-2004-099131İzleyin
Buffer overflow in mpg123 before 0.59s-r9 allows remote attackers to execute arbitrary code via frame headers in MP2 or MP3 files.
YüksekCVSS 7,5İstismar yokEPSS %4mpg123 · mpg12311 Oca 2005
- CVE-2014-949731İzleyin
Buffer overflow in mpg123 before 1.18.0.
YüksekCVSS 7,5İstismar yokEPSS %2mpg123 · mpg12329 Ağu 2017
- CVE-2017-1068330İzleyin
In mpg123 1.25.0, there is a heap-based buffer over-read in the convert_latin1 function in libmpg123/id3.c.
YüksekCVSS 7,5İstismar yokEPSS %1mpg123 · mpg12329 Haz 2017
- CVE-2006-165526İzleyin
Multiple buffer overflows in mpg123 0.59r allow user-assisted attackers to trigger a segmentation fault and possibly have other impacts via
OrtaCVSS 6,5İstismar yokEPSS %2mpg123 · mpg1236 Nis 2006
- CVE-2017-1112622İzleyin
The III_i_stereo function in libmpg123/layer3.c in mpg123 through 1.25.1 allows remote attackers to cause a denial of service (buffer over-r
OrtaCVSS 5,5İstismar yokEPSS %1mpg123 · mpg1239 Tem 2017
- CVE-2017-1279722İzleyin
Integer overflow in the INT123_parse_new_id3 function in the ID3 parser in mpg123 before 1.25.5 on 32-bit platforms allows remote attackers
OrtaCVSS 5,5İstismar yokEPSS %1mpg123 · mpg12329 Ağu 2017
- CVE-2017-954522İzleyin
The next_text function in src/libmpg123/id3.c in mpg123 1.24.0 allows remote attackers to cause a denial of service (buffer over-read) via a
OrtaCVSS 5,5İstismar yokEPSS %1mpg123 · mpg12327 Tem 2017
- CVE-2007-057817İzleyin
The http_open function in httpget.c in mpg123 before 0.64 allows remote attackers to cause a denial of service (infinite loop) by closing th
OrtaCVSS 4,3İstismar yokEPSS %1mpg123 · mpg12330 Oca 2007