CVE-2014-9028
EPSS 25.7%Published: 11/26/2014Modified: 4/28/2026
Description
Heap-based buffer overflow in stream_decoder.c in libFLAC before 1.3.1 allows remote attackers to execute arbitrary code via a crafted .flac file.
Affected packages (1)
- Debian/flacfrom 0, < 1.3.0-3