CVE-2017-14632Improper Restriction of Operations within the Bounds of a Memory Buffer in Libvorbis

Severity
9.8CRITICALNVD
EPSS
6.5%
top 8.87%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 21
Latest updateMay 13

Description

Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_headerout() in info.c when vi->channels<=0, a similar issue to Mozilla bug 550184.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages3 packages

Debianxiph.org/libvorbis< 1.3.5-4.1+3
Ubuntuxiph.org/libvorbis< 1.3.2-1.3ubuntu1.1+1

Also affects: Debian Linux 7.0, 9.0, Ubuntu Linux 14.04, 16.04, 17.10

🔴Vulnerability Details

4
GHSA
GHSA-pmfq-f4h4-9pwp: Xiph2022-05-13
OSV
libvorbis vulnerabilities2018-02-13
CVEList
CVE-2017-14632: Xiph2017-09-21
OSV
CVE-2017-14632: Xiph2017-09-21

📋Vendor Advisories

3
Ubuntu
libvorbis vulnerabilities2018-02-13
Red Hat
libvorbis: Invalid freeing of uninitialized memory in the function vorbis_analysis_headerout()2017-09-13
Debian
CVE-2017-14632: libvorbis - Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized...2017

💬Community

4
Bugzilla
CVE-2017-14632 libvorbis: Invalid freeing of uninitialized memory in the function vorbis_analysis_headerout()2017-10-09
Bugzilla
CVE-2017-11333 CVE-2017-11735 CVE-2017-14160 CVE-2017-14632 CVE-2017-14633 mingw-libvorbis: various flaws [fedora-all]2017-08-11
Bugzilla
CVE-2017-11333 CVE-2017-11735 CVE-2017-14160 CVE-2017-14632 CVE-2017-14633 libvorbis: various flaws [fedora-all]2017-08-11
Bugzilla
CVE-2017-11333 CVE-2017-11735 CVE-2017-14160 CVE-2017-14632 CVE-2017-14633 mingw-libvorbis: various flaws [epel-7]2017-08-11
CVE-2017-14632 — Xiph.org Libvorbis vulnerability | cvebase