VendorsMega-nerdlibsndfile1.0.15
Vulnerabilities

Mega-nerd Libsndfile 1.0.15

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2009-1788
Heap-based buffer overflow in voc_read_header in libsndfile 1.0.15 through 1.0.19, as used in Winamp 5.552 and possibly other media programs, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a VOC file with an invalid header value.
Published 2009-05-26 · Modified
9.3EPSS 0.082
CVE-2009-1791
Heap-based buffer overflow in aiff_read_header in libsndfile 1.0.15 through 1.0.19, as used in Winamp 5.552 and possibly other media programs, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via an AIFF file with an invalid header value.
Published 2009-05-26 · Modified
9.3EPSS 0.065
CVE-2009-0186
Integer overflow in libsndfile 1.0.18, as used in Winamp and other products, allows context-dependent attackers to execute arbitrary code via crafted description chunks in a CAF audio file, leading to a heap-based buffer overflow.
Published 2009-03-05 · Modified
9.3EPSS 0.036
CVE-2007-4974
Heap-based buffer overflow in the flac_buffer_copy function in libsndfile 1.0.17 and earlier might allow remote attackers to execute arbitrary code via a FLAC file with crafted PCM data containing a block with a size that exceeds the previous block size.
Published 2007-09-19 · Modified
7.5EPSS 0.045
CVE-2011-2696
Integer overflow in libsndfile before 1.0.25 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PARIS Audio Format (PAF) file that triggers a heap-based buffer overflow.
Published 2011-07-27 · Modified
6.8EPSS 0.046