İçeriğe atla
Noroxi

xiph.org kayıtları

xiph.org üreticisine ait 13 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
3
Düzeltme kaydı olan
%92,3
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

13 kayıt
  • CVE-2017-14632
    41Planlayın

    Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_headerout() in info.

    KritikCVSS 9,8İstismar yokEPSS %6

    xiph.org · libvorbis21 Eyl 2017

  • CVE-2008-1423
    39İzleyin

    Integer overflow in a certain quantvals and quantlist calculation in Xiph.org libvorbis 1.2.0 and earlier allows remote attackers to cause a

    KritikCVSS 9,3İstismar yokEPSS %8

    xiph.org · libvorbis16 May 2008

  • CVE-2017-14160
    36İzleyin

    The bark_noise_hybridmp function in psy.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (out-of-bounds ac

    YüksekCVSS 8,8İstismar yokEPSS %5

    xiph.org · libvorbis21 Eyl 2017

  • CVE-2018-10392
    36İzleyin

    mapping0_forward in mapping0.c in Xiph.Org libvorbis 1.3.6 does not validate the number of channels, which allows remote attackers to cause

    YüksekCVSS 8,8İstismar yokEPSS %3

    xiph.org · libvorbis26 Nis 2018

  • CVE-2018-10393
    31İzleyin

    bark_noise_hybridmp in psy.c in Xiph.Org libvorbis 1.3.6 has a stack-based buffer over-read.

    YüksekCVSS 7,5İstismar yokEPSS %2

    xiph.org · libvorbis26 Nis 2018

  • CVE-2008-1420
    29İzleyin

    Integer overflow in residue partition value (aka partvals) evaluation in Xiph.org libvorbis 1.2.0 and earlier allows remote attackers to exe

    OrtaCVSS 6,8İstismar yokEPSS %6

    xiph.org · libvorbis16 May 2008

  • CVE-2017-14633
    27İzleyin

    In Xiph.Org libvorbis 1.3.5, an out-of-bounds array read vulnerability exists in the function mapping0_forward() in mapping0.c, which may le

    OrtaCVSS 6,5İstismar yokEPSS %2

    xiph.org · libvorbis21 Eyl 2017

  • CVE-2020-20412
    26İzleyin

    lib/codebook.c in libvorbis before 1.3.6, as used in StepMania 5.0.12 and other products, has insufficient array bounds checking via a craft

    OrtaCVSS 6,5İstismar yokEPSS %1

    stepmania · stepmania26 Ara 2020

  • CVE-2017-11333
    23İzleyin

    The vorbis_analysis_wrote function in lib/block.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (OOM) via

    OrtaCVSS 5,5Kavram kanıtıEPSS %5

    xiph.org · libvorbis31 Tem 2017

  • CVE-2008-1419
    18İzleyin

    Xiph.org libvorbis 1.2.0 and earlier does not properly handle a zero value for codebook.dim, which allows remote attackers to cause a denial

    OrtaCVSS 4,3İstismar yokEPSS %4

    xiph.org · libvorbis16 May 2008

  • CVE-2008-2009
    18İzleyin

    Xiph.org libvorbis before 1.0 does not properly check for underpopulated Huffman trees, which allows remote attackers to cause a denial of s

    OrtaCVSS 4,3İstismar yokEPSS %4

    xiph.org · libvorbis16 May 2008

  • CVE-2007-4066
    18İzleyin

    Multiple buffer overflows in Xiph.Org libvorbis before 1.2.0 allow context-dependent attackers to cause a denial of service or have other un

    OrtaCVSS 4,3İstismar yokEPSS %2

    xiph.org · libvorbis21 Eyl 2007

  • CVE-2007-4065
    18İzleyin

    lib/vorbisfile.c in libvorbisfile in Xiph.Org libvorbis before 1.2.0 allows context-dependent attackers to cause a denial of service (infini

    OrtaCVSS 4,3İstismar yokEPSS %2

    xiph.org · libvorbis21 Eyl 2007