Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2007-6277 (libflac)

BugsAlert Home > CVE-2007-6277 (libflac)
 
 

Multiple buffer overflows in Free Lossless Audio Codec (FLAC) libFLAC before 1.2.1 allow user-assisted remote attackers to execute arbitrary code via large (1) Metadata Block Size, (2) VORBIS Comment String Size, (3) Picture Metadata MIME-TYPE Size, (4) Picture Description Size, (5) Picture Data Length, (6) Padding Length, and (7) PICTURE Metadata width and height values in a .FLAC file, which result in a heap-based overflow; and large (8) VORBIS Comment String Size Length, (9) Picture MIME-T...




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-6277

Learn more about CVE-2007-6277 (libflac)
 
Tags: cve-2007-6277 libflac

Related Items

      Bugtraq: Digital Armaments November-December Hacking Challenge: Diffuse Client Application (10.000$ extra)

      Debian Security Update Fixes MySQL Security Bypass and DoS Issues

      WORM_RONTKBR.F

      CVE-2008-1249 (320 SIP Phone)

      Vuln: Lenovo System Update SSL Certificate Validation Security Bypass Vulnerability

      CVE-2008-3729 (mailscan)

      CVE-2008-2252 (windows_2000, windows_server_2003, windows_server_2008, windows_vista, windows_xp)

 

Pixel