pkg:Debian/libvorbis
共 28 筆 CVECRITICAL1HIGH7MEDIUM5
✅ 檢查你的版本
所有已知漏洞
- CRITICAL9.8CVE-2017-14632Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_headerout() in info…from 0, < 1.3.5-4.1
- from 0, < 1.3.4-2+deb8u1
- from 0, < 1.3.5-4.2
- HIGH8.8CVE-2018-10392mapping0_forward in mapping0.c in Xiph.Org libvorbis 1.3.6 does not validate the number of channels, which allows remote attackers to cause…from 0, < 1.3.6-2
- from 0, < 1.3.6-2
- from 0, < 1.3.5-4+deb9u3
- from 0, < 1.3.4-2+deb8u2
- HIGH7.5CVE-2018-10393bark_noise_hybridmp in psy.c in Xiph.Org libvorbis 1.3.6 has a stack-based buffer over-read.from 0, < 1.3.6-2
- MEDIUM6.5CVE-2017-14633In Xiph.Org libvorbis 1.3.5, an out-of-bounds array read vulnerability exists in the function mapping0_forward() in mapping0.c, which may l…from 0, < 1.3.5-4.1
- from 0, < 1.3.2-1.3+deb7u1
- from 0, < 1.3.4-2+deb8u3
- from 0, < 1.3.5-4.1
- from 0, < 1.3.5-4+deb9u1
- from 0, < 1.3.1-1+squeeze1
- from 0, < 1.3.2-1.2
- —CVE-2009-3379Multiple unspecified vulnerabilities in libvorbis, as used in Mozilla Firefox 3.5.x before 3.5.4, allow remote attackers to cause a denial…from 0, < 1.2.3-1
- from 0, < 1.2.0.dfsg-6
- from 0, < 1.1.2.dfsg-1.4+etch1
- —CVE-2008-2009Xiph.org libvorbis before 1.0 does not properly check for underpopulated Huffman trees, which allows remote attackers to cause a denial of…from 0, < 1.2.0.dfsg-4
- —CVE-2008-1423Integer overflow in a certain quantvals and quantlist calculation in Xiph.org libvorbis 1.2.0 and earlier allows remote attackers to cause…from 0, < 1.2.0.dfsg-3.1
- from 0, < 1.1.2.dfsg-1.4
- —CVE-2008-1420Integer overflow in residue partition value (aka partvals) evaluation in Xiph.org libvorbis 1.2.0 and earlier allows remote attackers to ex…from 0, < 1.2.0.dfsg-3.1
- from 0, < 1.2.0.dfsg-3.1
- —CVE-2007-4066Multiple buffer overflows in Xiph.Org libvorbis before 1.2.0 allow context-dependent attackers to cause a denial of service or have other u…from 0, < 1.2.0.dfsg-1
- —CVE-2007-4065lib/vorbisfile.c in libvorbisfile in Xiph.Org libvorbis before 1.2.0 allows context-dependent attackers to cause a denial of service (infin…from 0, < 1.2.0.dfsg-1
- —CVE-2007-4029libvorbis 1.1.2, and possibly other versions before 1.2.0, allows context-dependent attackers to cause a denial of service via (1) an inval…from 0, < 1.2.0.dfsg-1
- from 0, < 1.1.2.dfsg-1.3
- from 0, < 1.2.0.dfsg-1