CVE-2014-8962
EPSS 14.7%flac - security update
Published: 11/26/2014Modified: 4/28/2026
Also known as:DEBIAN-CVE-2014-8962
Description
Stack-based buffer overflow in stream_decoder.c in libFLAC before 1.3.1 allows remote attackers to execute arbitrary code via a crafted .flac file.
Affected packages (3)
- Debian/flacfrom 0, < 1.3.0-3
- Debian/flacfrom 0, < 1.2.1-2+deb6u1
- Debian/flacfrom 0, < 1.2.1-6+deb7u1