CVE-2003-0969
EPSS 2.5%mpg321 - format string vulnerability
Published: 1/20/2004Modified: 4/28/2026
Description
mpg321 0.2.10 allows remote attackers to overwrite memory and possibly execute arbitrary code via an mp3 file that passes certain strings to the printf function, possibly triggering a format string vulnerability.
Affected packages (2)
- Debian/mpg321from 0, < 0.2.10.3
- Debian/mpg321from 0, < 0.2.10.2