« List of all CVEs

CVE-2012-1108

Published: 9/6/2012 Last updated: 8/6/2024 Reserved: 2/14/2012

The parse function in ogg/xiphcomment.cpp in TagLib 1.7 and earlier allows remote attackers to cause a denial of service (crash) via a crafted vendorLength field in an ogg file.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Opam packages affected (3)

conf-taglib conf-taglib_c taglib

Products affected (1)

Product Vendor Version
n/a n/a QCS8550

References (22)