Oval Definition:
oval:com.ubuntu.trusty:def:201711550000
Revision Date
:
2017-07-31
Version
:
1
Title
:
CVE-2017-11550 on Ubuntu 14.04 LTS (trusty) - low.
Description
:
The id3_ucs4_length function in ucs4.c in libid3tag 0.15.1b allows remote attackers to cause a denial of service (NULL Pointer Dereference and application crash) via a crafted mp3 file.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
CVE-2017-11550
Platform(s)
:
Ubuntu 14.04 LTS
Product(s)
:
Definition Synopsis
Ubuntu 14.04 LTS (trusty) is installed.
AND
NOT
While related to the CVE in some way, the 'libid3tag' package in trusty is not affected (note: '0.15.1b-10ubuntu1').
BACK