Lucene search

K
nvd[email protected]NVD:CVE-2009-1788
HistoryMay 26, 2009 - 4:30 p.m.

CVE-2009-1788

2009-05-2616:30:02
CWE-119
web.nvd.nist.gov
6

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

Low

EPSS

0.038

Percentile

91.9%

Heap-based buffer overflow in voc_read_header in libsndfile 1.0.15 through 1.0.19, as used in Winamp 5.552 and possibly other media programs, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a VOC file with an invalid header value.

Affected configurations

Nvd
Node
mega-nerdlibsndfileMatch1.0.15
OR
mega-nerdlibsndfileMatch1.0.16
OR
mega-nerdlibsndfileMatch1.0.17
OR
mega-nerdlibsndfileMatch1.0.18
OR
mega-nerdlibsndfileMatch1.0.19
OR
nullsoftwinampMatch5.5
OR
nullsoftwinampMatch5.51
OR
nullsoftwinampMatch5.52
OR
nullsoftwinampMatch5.54
OR
nullsoftwinampMatch5.55
OR
nullsoftwinampMatch5.541
OR
nullsoftwinampMatch5.552
VendorProductVersionCPE
mega-nerdlibsndfile1.0.15cpe:2.3:a:mega-nerd:libsndfile:1.0.15:*:*:*:*:*:*:*
mega-nerdlibsndfile1.0.16cpe:2.3:a:mega-nerd:libsndfile:1.0.16:*:*:*:*:*:*:*
mega-nerdlibsndfile1.0.17cpe:2.3:a:mega-nerd:libsndfile:1.0.17:*:*:*:*:*:*:*
mega-nerdlibsndfile1.0.18cpe:2.3:a:mega-nerd:libsndfile:1.0.18:*:*:*:*:*:*:*
mega-nerdlibsndfile1.0.19cpe:2.3:a:mega-nerd:libsndfile:1.0.19:*:*:*:*:*:*:*
nullsoftwinamp5.5cpe:2.3:a:nullsoft:winamp:5.5:*:*:*:*:*:*:*
nullsoftwinamp5.51cpe:2.3:a:nullsoft:winamp:5.51:*:*:*:*:*:*:*
nullsoftwinamp5.52cpe:2.3:a:nullsoft:winamp:5.52:*:*:*:*:*:*:*
nullsoftwinamp5.54cpe:2.3:a:nullsoft:winamp:5.54:*:*:*:*:*:*:*
nullsoftwinamp5.55cpe:2.3:a:nullsoft:winamp:5.55:*:*:*:*:*:*:*
Rows per page:
1-10 of 121

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.8

Confidence

Low

EPSS

0.038

Percentile

91.9%