Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Trougnouf

#46418de 53,638
5.5CVSS total
Vulnerabilidades · 1
PT-2018-12447
5.5
2018-07-19
Clementine · Clementine Music Player · CVE-2018-14332
**Name of the Vulnerable Software and Affected Versions** Clementine Music Player version 1.3.1 **Description** A user mode write access violation occurs due to a NULL pointer dereference in the `Init` call in the `MoodbarPipeline::NewPadCallback` function. This issue is triggered when a user opens a malformed mp3 file. **Recommendations** For version 1.3.1, consider avoiding the use of the `MoodbarPipeline::NewPadCallback` function until a patch is available. As a temporary workaround, refrain from opening malformed mp3 files to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.