stb_vorbis Project stb_vorbis 2019-03-04

CPE Details

stb_vorbis Project stb_vorbis 2019-03-04
2019-03-04
2020-01-02
15h04 +00:00
2020-01-02
15h04 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:stb_vorbis_project:stb_vorbis:2019-03-04:*:*:*:*:*:*:*

Informations

Vendor

stb_vorbis_project

Product

stb_vorbis

Version

2019-03-04

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2019-13217 2019-08-14 22h00 +00:00 A heap buffer overflow in the start_decoder function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or execute arbitrary code by opening a crafted Ogg Vorbis file.
7.8
High
CVE-2019-13218 2019-08-14 22h00 +00:00 Division by zero in the predict_point function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service by opening a crafted Ogg Vorbis file.
5.5
Medium
CVE-2019-13219 2019-08-14 22h00 +00:00 A NULL pointer dereference in the get_window function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service by opening a crafted Ogg Vorbis file.
5.5
Medium
CVE-2019-13220 2019-08-14 22h00 +00:00 Use of uninitialized stack variables in the start_decoder function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or disclose sensitive information by opening a crafted Ogg Vorbis file.
7.1
High
CVE-2019-13221 2019-08-14 22h00 +00:00 A stack buffer overflow in the compute_codewords function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or execute arbitrary code by opening a crafted Ogg Vorbis file.
7.8
High
CVE-2019-13222 2019-08-14 22h00 +00:00 An out-of-bounds read of a global buffer in the draw_line function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service or disclose sensitive information by opening a crafted Ogg Vorbis file.
7.1
High
CVE-2019-13223 2019-08-14 22h00 +00:00 A reachable assertion in the lookup1_values function in stb_vorbis through 2019-03-04 allows an attacker to cause a denial of service by opening a crafted Ogg Vorbis file.
5.5
Medium