← Back to CVE List

CVE-2017-9870

Published: 2017-06-25T19:29Z
Last Modified: 2024-11-21T03:37Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The III_i_stereo function in layer3.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allows remote attackers to cause a denial of service (buffer over-read and application crash) via a crafted audio file that is mishandled in the code for the "block_type == 2" case, a similar issue to CVE-2017-11126. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt