CVE-2018-10392Out-of-bounds Read in Libvorbis

Severity
8.8HIGHNVD
EPSS
1.4%
top 19.36%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 26
Latest updateMay 13

Description

mapping0_forward in mapping0.c in Xiph.Org libvorbis 1.3.6 does not validate the number of channels, which allows remote attackers to cause a denial of service (heap-based buffer overflow or over-read) or possibly have unspecified other impact via a crafted file.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages3 packages

Debianxiph.org/libvorbis< 1.3.6-2+3
Ubuntuxiph.org/libvorbis< 1.3.5-3ubuntu0.2+esm1

Also affects: Debian Linux 8.0, 9.0, Enterprise Linux 8.0, 8.1, 8.2, 8.4

🔴Vulnerability Details

4
GHSA
GHSA-gqh4-wfj8-7856: mapping0_forward in mapping02022-05-13
OSV
libvorbis vulnerabilities2022-05-12
OSV
CVE-2018-10392: mapping0_forward in mapping02018-04-26
CVEList
CVE-2018-10392: mapping0_forward in mapping02018-04-26

📋Vendor Advisories

4
Ubuntu
Vorbis vulnerabilities2022-05-12
Red Hat
libvorbis: heap buffer overflow in mapping0_forward function2018-04-25
Microsoft
mapping0_forward in mapping0.c in Xiph.Org libvorbis 1.3.6 does not validate the number of channels which allows remote attackers to cause a denial of service (heap-based buffer overflow or over-read)2018-04-10
Debian
CVE-2018-10392: libvorbis - mapping0_forward in mapping0.c in Xiph.Org libvorbis 1.3.6 does not validate the...2018

💬Community

4
Bugzilla
CVE-2018-10392 CVE-2018-10393 mingw-libvorbis: various flaws [epel-7]2018-05-02
Bugzilla
CVE-2018-10392 CVE-2018-10393 mingw-libvorbis: various flaws [fedora-all]2018-05-02
Bugzilla
CVE-2018-10392 CVE-2018-10393 libvorbis: various flaws [fedora-all]2018-05-02
Bugzilla
CVE-2018-10392 libvorbis: heap buffer overflow in mapping0_forward function2018-05-02
CVE-2018-10392 — Out-of-bounds Read in Libvorbis | cvebase