CVE-2006-7075

Buffer overflow in the meta_read_flac function in meta_decoder.c for Aqualung 0.9beta5 and earlier, and CVS 0.193.2 and earlier, allows user-assisted attackers to execute arbitrary code via a long Vorbis comment in a Free Lossless Audio Codec (FLAC) file.
Configurations

Configuration 1 (hide)

cpe:2.3:a:aqualung:aqualung:0.9_beta5:beta5:*:*:*:*:*:*

History

21 Nov 2024, 00:24

Type Values Removed Values Added
References () http://aluigi.altervista.org/adv/aquabof-adv.txt - Exploit, Patch, Vendor Advisory () http://aluigi.altervista.org/adv/aquabof-adv.txt - Exploit, Patch, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/28310 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/28310 -

Information

Published : 2007-03-02 21:18

Updated : 2024-11-21 00:24


NVD link : CVE-2006-7075

Mitre link : CVE-2006-7075

CVE.ORG link : CVE-2006-7075


JSON object : View

Products Affected

aqualung

  • aqualung