CVE-2017-12678 REJECTED

In TagLib 1.11.1, the rebuildAggregateFrames function in id3v2framefactory.cpp has a pointer to cast vulnerability, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted audio file.

EPSS 0.69% · 71.6th percentile

Risk Scores

EPSS Score
0.69%
71.6th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTStaglib0, 1.11.1+dfsg.1-0.2, 1.11.1+dfsg.1-0.2build1

Timeline

References

Open in Interactive Console →