PT-2023-25014 · Fdkaac+4 · Fdkaac+4
Mondaylord
·
Published
2023-02-25
·
Updated
2025-07-23
·
CVE-2023-34823
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
fdkaac versions prior to 1.0.5
Description
The issue is related to a stack overflow in the
read callback function located in src/main.c. This indicates a potential buffer overflow condition that could be exploited.Recommendations
For versions prior to 1.0.5, update to version 1.0.5 or later to resolve the issue. As a temporary workaround, consider restricting access to the
read callback function in src/main.c until a patch is applied.Exploit
Fix
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Debian
Linuxmint
Ubuntu
Fdkaac