Description
stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger out of buffer write in `start_decoder` because at maximum `m->submaps` can be 16 but `submap_floor` and `submap_residue` are declared as arrays of 15 elements. This issue may lead to code execution.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-49968 | stb_vorbis is a single file MIT licensed library for processing ogg vorbis files. A crafted file may trigger out of buffer write in `start_decoder` because at maximum `m->submaps` can be 16 but `submap_floor` and `submap_residue` are declared as arrays of 15 elements. This issue may lead to code execution. |
References
History
No history.
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2024-09-12T13:37:04.169Z
Reserved: 2023-10-10T14:36:40.862Z
Link: CVE-2023-45678
Updated: 2024-08-02T20:29:31.223Z
Status : Modified
Published: 2023-10-21T00:15:09.413
Modified: 2024-11-21T08:27:11.977
Link: CVE-2023-45678
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD