Your submission was sent successfully! Close

Thank you for contacting us. A member of our team will be in touch shortly. Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

1 – 10 of 16 results


CVE-2024-10573

Medium priority

Some fixes available 4 of 7

An out-of-bounds write flaw was found in mpg123 when handling crafted streams. When decoding PCM, the libmpg123 may write past the end of a heap-located buffer. Consequently, heap corruption may happen, and arbitrary code...

1 affected packages

mpg123

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mpg123 Fixed Fixed Fixed Needs evaluation Needs evaluation
Show less packages

CVE-2017-12839

Low priority
Fixed

A heap-based buffer over-read in the getbits function in src/libmpg123/getbits.h in mpg123 through 1.25.5 allows remote attackers to cause a possible denial-of-service (out-of-bounds read) or possibly have unspecified other impact...

1 affected packages

mpg123

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mpg123 Not affected Not affected Not affected Fixed
Show less packages

CVE-2014-9497

Medium priority

Some fixes available 1 of 3

Buffer overflow in mpg123 before 1.18.0.

1 affected packages

mpg123

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mpg123 Not affected Not affected
Show less packages

CVE-2017-12797

Medium priority

Some fixes available 2 of 3

Integer overflow in the INT123_parse_new_id3 function in the ID3 parser in mpg123 before 1.25.5 on 32-bit platforms allows remote attackers to cause a denial of service via a crafted file, which triggers a heap-based buffer overflow.

1 affected packages

mpg123

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mpg123 Not affected Not affected Not affected Fixed
Show less packages

CVE-2017-9545

Medium priority

Some fixes available 2 of 3

The next_text function in src/libmpg123/id3.c in mpg123 1.24.0 allows remote attackers to cause a denial of service (buffer over-read) via a crafted mp3 file.

1 affected packages

mpg123

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mpg123 Not affected Not affected Not affected Fixed
Show less packages

CVE-2017-11126

Low priority

Some fixes available 2 of 4

The III_i_stereo function in libmpg123/layer3.c in mpg123 through 1.25.1 allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted audio file that is mishandled in the code for the...

1 affected packages

mpg123

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mpg123 Not affected Not affected Not affected Fixed
Show less packages

CVE-2017-10683

Medium priority

Some fixes available 2 of 4

In mpg123 1.25.0, there is a heap-based buffer over-read in the convert_latin1 function in libmpg123/id3.c. A crafted input will lead to a remote denial of service attack.

1 affected packages

mpg123

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mpg123 Not affected Fixed
Show less packages

CVE-2016-1000247

Low priority

Some fixes available 2 of 5

mpg123 memory overread

1 affected packages

mpg123

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mpg123 Not affected Fixed
Show less packages

CVE-2009-1301

Low priority
Fixed

Integer signedness error in the store_id3_text function in the ID3v2 code in mpg123 before 1.7.2 allows remote attackers to cause a denial of service (out-of-bounds memory access) and possibly execute arbitrary code via an ID3 tag...

1 affected packages

mpg123

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mpg123
Show less packages

CVE-2007-0578

Unknown priority

Some fixes available 6 of 8

The http_open function in httpget.c in mpg123 before 0.64 allows remote attackers to cause a denial of service (infinite loop) by closing the HTTP connection early.

1 affected packages

mpg123

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
mpg123
Show less packages