CVE-2024-41147

An out-of-bounds write vulnerability exists in the ma_dr_flac__decode_samples__lpc functionality of Miniaudio miniaudio v0.11.21. A specially crafted .flac file can lead to memory corruption. An attacker can provide a malicious file to trigger this vulnerability.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mackron:miniaudio:0.11.21:*:*:*:*:*:*:*

History

26 Aug 2025, 17:14

Type Values Removed Values Added
First Time Mackron
Mackron miniaudio
CPE cpe:2.3:a:mackron:miniaudio:0.11.21:*:*:*:*:*:*:*
References () https://talosintelligence.com/vulnerability_reports/TALOS-2024-2063 - () https://talosintelligence.com/vulnerability_reports/TALOS-2024-2063 - Exploit, Third Party Advisory
References () https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-2063 - () https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-2063 - Exploit, Third Party Advisory

04 Mar 2025, 19:15

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de escritura fuera de límites en la funcionalidad `ma_dr_flac__decode_samples__lpc` de Miniaudio miniaudio v0.11.21. Un archivo .flac especialmente preparado puede ocasionar una corrupción de memoria. Un atacante pod?ia proporcionar un archivo malicioso para explotar esta vulnerabilidad.
References
  • () https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-2063 -

04 Mar 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-04 18:15

Updated : 2025-08-26 17:14


NVD link : CVE-2024-41147

Mitre link : CVE-2024-41147

CVE.ORG link : CVE-2024-41147


JSON object : View

Products Affected

mackron

  • miniaudio
CWE
CWE-122

Heap-based Buffer Overflow