Integer overflow in the padding implementation in the opus_packet_parse_impl function in src/opus_decoder.c in Opus before 1.0.2, as used in Google Chrome before 25.0.1364.97 on Windows and Linux and before 25.0.1364.99 on Mac OS X and other products, allows remote attackers to cause a denial of service (out-of-bounds read) via a long packet.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: Chrome

Published: 2013-02-23T21:00:00

Updated: 2024-08-06T14:41:48.290Z

Reserved: 2013-01-07T00:00:00

Link: CVE-2013-0899

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2013-02-23T21:55:02.000

Modified: 2023-11-07T02:14:21.490

Link: CVE-2013-0899

cve-icon Redhat

No data.