Description
The bark_noise_hybridmp function in psy.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (out-of-bounds access and application crash) or possibly have unspecified other impact via a crafted mp4 file.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-2013-1 | libvorbis security update |
Debian DLA |
DLA-2828-1 | libvorbis security update |
EUVD |
EUVD-2017-5670 | The bark_noise_hybridmp function in psy.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (out-of-bounds access and application crash) or possibly have unspecified other impact via a crafted mp4 file. |
Ubuntu USN |
USN-5420-1 | Vorbis vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-05T19:20:40.959Z
Reserved: 2017-09-05T00:00:00.000Z
Link: CVE-2017-14160
No data.
Status : Modified
Published: 2017-09-21T14:29:00.573
Modified: 2026-05-13T00:24:29.033
Link: CVE-2017-14160
OpenCVE Enrichment
No data.
Debian DLA
EUVD
Ubuntu USN