Skip to main content

Vendor/product archive

xiph / vorbis-tools CVEs

Beta · best-effort

6 CVEs tagged to xiph / vorbis-tools0 Critical, 1 High, 5 Medium, 0 Low, 0 Unrated.

CVE-2023-43361

Published Oct 2, 2023

Buffer Overflow vulnerability in Vorbis-tools v.1.4.2 allows a local attacker to execute arbitrary code and cause a denial of service during the conversion of wav files to ogg fil…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2017-11331

Published Jul 31, 2017

The wav_open function in oggenc/audio.c in Xiph.Org vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (memory allocation error) via a crafted wav file.

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-6749

Published Sep 21, 2015

Buffer overflow in the aiff_open function in oggenc/audio.c in vorbis-tools 1.4.0 and earlier allows remote attackers to cause a denial of service (crash) via a crafted AIFF file.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-6 of 6 CVEsPage 1 of 1