CVE-2017-14160 PUBLISHED

The bark_noise_hybridmp function in psy.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (out-of-bounds access and application crash) or possibly have unspecified other impact via a crafted mp4 file.

EPSS 1.55% · 81.3th percentile

Risk Scores

EPSS Score
1.55%
81.3th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:16.04:LTSlibvorbis0, 1.3.4-2, 1.3.4-3
Ubuntu:18.04:LTSlibvorbis0, 1.3.5-4, 1.3.5-4.1

Timeline

References

Open in Interactive Console →