Vulnerabilities
Vulnerable Software
Mpg123:  >> Mpg123  >> 1.25.4  Security Vulnerabilities
A heap-based buffer over-read in the getbits function in src/libmpg123/getbits.h in mpg123 through 1.25.5 allows remote attackers to cause a possible denial-of-service (out-of-bounds read) or possibly have unspecified other impact via a crafted mp3 file.
CVSS Score
8.3
EPSS Score
0.006
Published
2019-05-09
Integer overflow in the INT123_parse_new_id3 function in the ID3 parser in mpg123 before 1.25.5 on 32-bit platforms allows remote attackers to cause a denial of service via a crafted file, which triggers a heap-based buffer overflow.
CVSS Score
5.5
EPSS Score
0.005
Published
2017-08-29


Contact Us

Shodan ® - All rights reserved