stb_vorbis Project stb_vorbis 0.98 Beta

CPE Details

stb_vorbis Project stb_vorbis 0.98 Beta
0.98
2019-10-09
14h16 +00:00
2019-10-09
14h16 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:stb_vorbis_project:stb_vorbis:0.98:beta:*:*:*:*:*:*

Informations

Vendor

stb_vorbis_project

Product

stb_vorbis

Version

0.98

Update

beta

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2019-13217 2019-08-14 22h00 +00:00 A heap buffer overflow in the start_decoder function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or execute arbitrary code by opening a crafted Ogg Vorbis file.
7.8
High
CVE-2019-13218 2019-08-14 22h00 +00:00 Division by zero in the predict_point function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service by opening a crafted Ogg Vorbis file.
5.5
Medium
CVE-2019-13219 2019-08-14 22h00 +00:00 A NULL pointer dereference in the get_window function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service by opening a crafted Ogg Vorbis file.
5.5
Medium
CVE-2019-13220 2019-08-14 22h00 +00:00 Use of uninitialized stack variables in the start_decoder function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or disclose sensitive information by opening a crafted Ogg Vorbis file.
7.1
High
CVE-2019-13221 2019-08-14 22h00 +00:00 A stack buffer overflow in the compute_codewords function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or execute arbitrary code by opening a crafted Ogg Vorbis file.
7.8
High
CVE-2019-13222 2019-08-14 22h00 +00:00 An out-of-bounds read of a global buffer in the draw_line function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or disclose sensitive information by opening a crafted Ogg Vorbis file.
7.1
High
CVE-2019-13223 2019-08-14 22h00 +00:00 A reachable assertion in the lookup1_values function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service by opening a crafted Ogg Vorbis file.
5.5
Medium
CVE-2018-1000050 2018-02-09 22h00 +00:00 Sean Barrett stb_vorbis version 1.12 and earlier contains a Buffer Overflow vulnerability in All vorbis decoding paths. that can result in memory corruption, denial of service, comprised execution of host program. This attack appear to be exploitable via Victim must open a specially crafted Ogg Vorbis file. This vulnerability appears to have been fixed in 1.13.
8.8
High