PT-2017-13833 · Lame+1 · Lame+1

Kirit Sankar Gupta

·

Published

2017-10-06

·

Updated

2021-02-04

·

CVE-2017-15046

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions LAME versions 3.97 through 3.99.5
Description A stack-based buffer overflow issue exists in the unpack read samples function within the frontend/get audio.c file. This is a distinct issue from previously reported problems.
Recommendations For LAME versions 3.97 through 3.99.5, consider disabling the unpack read samples function in frontend/get audio.c as a temporary workaround until a patch is available.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-1793
CVE-2017-15046

Affected Products

Alt Linux
Lame