CVE-2007-4619
Gravedad CVSS v2.0:
ALTA
Tipo:
CWE-189
Errores numéricos
Fecha de publicación:
12/10/2007
Última modificación:
09/04/2025
Descripción
Múltiples desbordamientos de entero en Free Lossless Audio Codec (FLAC) libFLAC versiones anteriores a 1.2.1, como se usan Winamp versiones anteriores a 5.5 y otros productos, permiten a atacantes remotos con la complicidad del usuario ejecutar código de su elección mediante un fichero FLAC malformado que dispara una ubicación de memoria inapropiada, resultando en un desbordamiento de búfer basado en montículo.
Impacto
Puntuación base 2.0
9.30
Gravedad 2.0
ALTA
Productos y versiones vulnerables
CPE | Desde | Hasta |
---|---|---|
cpe:2.3:a:flac:libflac:*:*:*:*:*:*:*:* | 1.2 (incluyendo) | |
cpe:2.3:a:nullsoft:winamp:*:*:*:*:*:*:*:* | 5.35 (incluyendo) |
Para consultar la lista completa de nombres de CPE con productos y versiones, ver esta página
Referencias a soluciones, herramientas e información
- http://bugzilla.redhat.com/show_bug.cgi?id=331991
- http://flac.sourceforge.net/changelog.html#flac_1_2_1
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=608
- http://lists.opensuse.org/opensuse-security-announce/2007-10/msg00008.html
- http://secunia.com/advisories/27210
- http://secunia.com/advisories/27223
- http://secunia.com/advisories/27355
- http://secunia.com/advisories/27399
- http://secunia.com/advisories/27507
- http://secunia.com/advisories/27601
- http://secunia.com/advisories/27625
- http://secunia.com/advisories/27628
- http://secunia.com/advisories/27780
- http://secunia.com/advisories/27878
- http://secunia.com/advisories/28548
- http://security.gentoo.org/glsa/glsa-200711-15.xml
- http://securitytracker.com/id?1018815=
- http://wiki.rpath.com/wiki/Advisories:rPSA-2007-0243
- http://www.debian.org/security/2008/dsa-1469
- http://www.mandriva.com/security/advisories?name=MDKSA-2007%3A214
- http://www.redhat.com/support/errata/RHSA-2007-0975.html
- http://www.securityfocus.com/bid/26042
- http://www.ubuntu.com/usn/usn-540-1
- http://www.vupen.com/english/advisories/2007/3483
- http://www.vupen.com/english/advisories/2007/3484
- http://www.vupen.com/english/advisories/2007/4061
- https://bugzilla.redhat.com/show_bug.cgi?id=332571
- https://exchange.xforce.ibmcloud.com/vulnerabilities/37187
- https://issues.rpath.com/browse/RPL-1873
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10571
- https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00035.html
- http://bugzilla.redhat.com/show_bug.cgi?id=331991
- http://flac.sourceforge.net/changelog.html#flac_1_2_1
- http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=608
- http://lists.opensuse.org/opensuse-security-announce/2007-10/msg00008.html
- http://secunia.com/advisories/27210
- http://secunia.com/advisories/27223
- http://secunia.com/advisories/27355
- http://secunia.com/advisories/27399
- http://secunia.com/advisories/27507
- http://secunia.com/advisories/27601
- http://secunia.com/advisories/27625
- http://secunia.com/advisories/27628
- http://secunia.com/advisories/27780
- http://secunia.com/advisories/27878
- http://secunia.com/advisories/28548
- http://security.gentoo.org/glsa/glsa-200711-15.xml
- http://securitytracker.com/id?1018815=
- http://wiki.rpath.com/wiki/Advisories:rPSA-2007-0243
- http://www.debian.org/security/2008/dsa-1469
- http://www.mandriva.com/security/advisories?name=MDKSA-2007%3A214
- http://www.redhat.com/support/errata/RHSA-2007-0975.html
- http://www.securityfocus.com/bid/26042
- http://www.ubuntu.com/usn/usn-540-1
- http://www.vupen.com/english/advisories/2007/3483
- http://www.vupen.com/english/advisories/2007/3484
- http://www.vupen.com/english/advisories/2007/4061
- https://bugzilla.redhat.com/show_bug.cgi?id=332571
- https://exchange.xforce.ibmcloud.com/vulnerabilities/37187
- https://issues.rpath.com/browse/RPL-1873
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10571
- https://www.redhat.com/archives/fedora-package-announce/2007-November/msg00035.html