VDB

CVE-2007-4974

CVE-2007-4974 PUBLISHED

Reported by mitre · Published September 19, 2007

Heap-based buffer overflow in the flac_buffer_copy function in libsndfile 1.0.17 and earlier might allow remote attackers to execute arbitrary code via a FLAC file with crafted PCM data containing a block with a size that exceeds the previous block size.

Affected Products

VendorProductVersions
n/an/an/a
n/an/a*, *, n/a

Timeline

  • Sep 19, 2007 CVE Published
  • Feb 4, 2022 EPSS Score
  • Mar 29, 2022 EPSS Score
  • May 20, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
  • Oct 26, 2022 EPSS Score
  • Dec 18, 2022 EPSS Score
  • Feb 9, 2023 EPSS Score
  • Apr 3, 2023 EPSS Score
  • May 25, 2023 EPSS Score
  • Jul 17, 2023 EPSS Score
  • Sep 8, 2023 EPSS Score

References

  • 28412 third-party-advisoryx_refsource_SECUNIA
  • GLSA-200710-04 vendor-advisoryx_refsource_GENTOO
  • 27100 third-party-advisoryx_refsource_SECUNIA
  • 25758 vdb-entryx_refsource_BID
  • FEDORA-2007-2236 vendor-advisoryx_refsource_FEDORA
  • x_refsource_CONFIRM
  • x_refsource_CONFIRM
  • ADV-2007-3241 vdb-entryx_refsource_VUPEN
  • 28265 third-party-advisoryx_refsource_SECUNIA
  • MDKSA-2007:191 vendor-advisoryx_refsource_MANDRIVA
  • USN-525-1 vendor-advisoryx_refsource_UBUNTU
  • 27018 third-party-advisoryx_refsource_SECUNIA
  • DSA-1442 vendor-advisoryx_refsource_DEBIAN
  • 27071 third-party-advisoryx_refsource_SECUNIA
  • 26921 third-party-advisoryx_refsource_SECUNIA
  • SUSE-SR:2008:001 vendor-advisoryx_refsource_SUSE
  • 26932 third-party-advisoryx_refsource_SECUNIA
Open in Interactive Console →
$ Console Community · 100/wk Open console ›