Vulnerability index

Browse CVEs

8 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Theora CRITICAL 9.8
CVE-2024-56431

oc_huff_tree_unpack in huffdec.c in libtheora in Theora through 1.0 7180717 has an invalid negative left shift. NOTE: this is disputed by third parti…

Fix: 1.2.0+
Fix from $2,300 2024-12-25
Vorbis Tools HIGH 7.8
CVE-2023-43361

Buffer Overflow vulnerability in Vorbis-tools v.1.4.2 allows a local attacker to execute arbitrary code and cause a denial of service during the conv…

No fix yet
Fix from $1,950 2023-10-02
Speex MEDIUM 5.5
CVE-2020-23904

A stack buffer overflow in speexenc.c of Speex v1.2 allows attackers to cause a denial of service (DoS) via a crafted WAV file. NOTE: the vendor stat…

No fix yet
Fix from $1,600 2021-11-10
Libao MEDIUM 5.5
CVE-2017-11548

The _tokenize_matrix function in audio_out.c in Xiph.Org libao 1.2.0 allows remote attackers to cause a denial of service (memory corruption) via a c…

No fix yet
Fix from $1,600 2017-07-31
Vorbis Tools MEDIUM 5.5
CVE-2017-11331

The wav_open function in oggenc/audio.c in Xiph.Org vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (memory allocation error)…

No fix yet
Fix from $1,600 2017-07-31
Vorbis Tools MEDIUM 5.0
CVE-2014-9640

oggenc/oggenc.c in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted raw file.

Mitigation only
Fix from $1,600 2015-01-23
Icecast MEDIUM 5.0
CVE-2011-4612

icecast before 2.3.3 allows remote attackers to inject control characters such as newlines into the error loc (error.log) via a crafted URL.

Fix: after 2.3.2
Fix from $1,600 2012-11-20
Icecast Ezstream HIGH 9.3
CVE-2007-1344EPSS 6%

Multiple buffer overflows in src/ezstream.c in Ezstream before 0.3.0 allow remote attackers to execute arbitrary code via a crafted XML configuration…

Fix: after 0.2.1
Fix from $1,950 2007-03-08