Vulnerability Name: | CVE-2007-4029 (CCN-35623) | ||||||||||||||||||||||||||||||||
Assigned: | 2007-07-26 | ||||||||||||||||||||||||||||||||
Published: | 2007-07-26 | ||||||||||||||||||||||||||||||||
Updated: | 2018-10-15 | ||||||||||||||||||||||||||||||||
Summary: | libvorbis 1.1.2, and possibly other versions before 1.2.0, allows context-dependent attackers to cause a denial of service via (1) an invalid mapping type, which triggers an out-of-bounds read in the vorbis_info_clear function in info.c, and (2) invalid blocksize values that trigger a segmentation fault in the read function in block.c. | ||||||||||||||||||||||||||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||||||||||||||||||||||
CVSS v2 Severity: | 6.8 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P) 5.0 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
5.5 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||||||||||||||||||||||||||
Vulnerability Type: | CWE-Other | ||||||||||||||||||||||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||||||||||||||||||||||
References: | Source: CCN Type: BugTraq Mailing List, Thu Jul 26 2007 - 12:18:33 CDT libvorbis 1.1.2 - Multiple memory corruption flaws Source: MITRE Type: CNA CVE-2007-4029 Source: CCN Type: RHSA-2007-0845 Important: libvorbis security update Source: CCN Type: RHSA-2007-0912 Important: libvorbis security update Source: SECUNIA Type: UNKNOWN 24923 Source: SECUNIA Type: UNKNOWN 26087 Source: CCN Type: SA26232 libvorbis Multiple Vulnerabilities Source: SECUNIA Type: UNKNOWN 26232 Source: CCN Type: SA26299 Music Box libvorbis Multiple Vulnerabilities Source: SECUNIA Type: UNKNOWN 26299 Source: SECUNIA Type: UNKNOWN 26429 Source: SECUNIA Type: UNKNOWN 26535 Source: SECUNIA Type: UNKNOWN 26865 Source: SECUNIA Type: UNKNOWN 27099 Source: SECUNIA Type: UNKNOWN 27439 Source: SECUNIA Type: UNKNOWN 28614 Source: GENTOO Type: UNKNOWN GLSA-200710-03 Source: CCN Type: SECTRACK ID: 1018712 libvorbis Bugs Let Remote Users Deny Service or Execute Arbitrary Code Source: SECTRACK Type: UNKNOWN 1018712 Source: CCN Type: ASA-2007-393 Libvorbis security update (RHSA-2007-0845) Source: CCN Type: ASA-2007-479 libvorbis security update (RHSA-2007-0912) Source: DEBIAN Type: UNKNOWN DSA-1471 Source: DEBIAN Type: DSA-1471 libvorbis -- several vulnerabilities Source: CCN Type: GLSA-200710-03 libvorbis: Multiple vulnerabilities Source: MISC Type: UNKNOWN http://www.isecpartners.com/advisories/2007-003-libvorbis.txt Source: MANDRIVA Type: UNKNOWN MDKSA-2007:167-1 Source: SUSE Type: UNKNOWN SUSE-SR:2007:023 Source: REDHAT Type: UNKNOWN RHSA-2007:0845 Source: REDHAT Type: UNKNOWN RHSA-2007:0912 Source: BUGTRAQ Type: UNKNOWN 20070726 libvorbis 1.1.2 - Multiple memory corruption flaws Source: BID Type: UNKNOWN 25082 Source: CCN Type: BID-25082 Libvorbis Denial Of Service And Memory Corruption Vulnerabilities Source: CCN Type: Tellini Blog, Tuesday, July 31. 2007 Music Box 1.6 - libvorbis update Source: CONFIRM Type: UNKNOWN http://www.tellini.org/blog/archives/32-Music-Box-1.6.html Source: CCN Type: T Software Web site Music Box Source: CCN Type: USN-498-1 libvorbis vulnerabilities Source: UBUNTU Type: UNKNOWN USN-498-1 Source: VUPEN Type: UNKNOWN ADV-2007-2698 Source: VUPEN Type: UNKNOWN ADV-2007-2760 Source: CCN Type: libvorbis Web site Xiph.org Source: CONFIRM Type: UNKNOWN https://bugzilla.redhat.com/show_bug.cgi?id=249780 Source: XF Type: UNKNOWN libvorbis-infoclear-code-execution(35623) Source: XF Type: UNKNOWN libvorbis-infoclear-code-execution(35623) Source: XF Type: UNKNOWN libvorbis-blocksize-code-execution(35624) Source: CONFIRM Type: UNKNOWN https://issues.rpath.com/browse/RPL-1590 Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:10570 Source: SUSE Type: SUSE-SR:2007:023 SUSE Security Summary Report | ||||||||||||||||||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Configuration RedHat 2: Configuration RedHat 3: Configuration RedHat 4: Configuration RedHat 5: Configuration RedHat 6: Configuration RedHat 7: Configuration RedHat 8: Configuration RedHat 9: Denotes that component is vulnerable | ||||||||||||||||||||||||||||||||
Vulnerability Name: | CVE-2007-4029 (CCN-35624) | ||||||||||||||||||||||||||||||||
Assigned: | 2007-07-26 | ||||||||||||||||||||||||||||||||
Published: | 2007-07-26 | ||||||||||||||||||||||||||||||||
Updated: | 2007-07-26 | ||||||||||||||||||||||||||||||||
Summary: | libvorbis 1.1.2, and possibly other versions before 1.2.0, allows context-dependent attackers to cause a denial of service via (1) an invalid mapping type, which triggers an out-of-bounds read in the vorbis_info_clear function in info.c, and (2) invalid blocksize values that trigger a segmentation fault in the read function in block.c. | ||||||||||||||||||||||||||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||||||||||||||||||||||
CVSS v2 Severity: | 6.8 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P) 5.0 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
5.5 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||||||||||||||||||||||||||
Vulnerability Consequences: | Gain Access | ||||||||||||||||||||||||||||||||
References: | Source: CCN Type: BugTraq Mailing List, Thu Jul 26 2007 - 12:18:33 CDT libvorbis 1.1.2 - Multiple memory corruption flaws Source: MITRE Type: CNA CVE-2007-4029 Source: CCN Type: RHSA-2007-0845 Important: libvorbis security update Source: CCN Type: RHSA-2007-0912 Important: libvorbis security update Source: CCN Type: SA26232 libvorbis Multiple Vulnerabilities Source: CCN Type: SA26299 Music Box libvorbis Multiple Vulnerabilities Source: CCN Type: SECTRACK ID: 1018712 libvorbis Bugs Let Remote Users Deny Service or Execute Arbitrary Code Source: CCN Type: ASA-2007-393 Libvorbis security update (RHSA-2007-0845) Source: CCN Type: ASA-2007-479 libvorbis security update (RHSA-2007-0912) Source: DEBIAN Type: DSA-1471 libvorbis -- several vulnerabilities Source: CCN Type: GLSA-200710-03 libvorbis: Multiple vulnerabilities Source: CCN Type: BID-25082 Libvorbis Denial Of Service And Memory Corruption Vulnerabilities Source: CCN Type: Tellini Blog, Tuesday, July 31. 2007 Music Box 1.6 - libvorbis update Source: CCN Type: T Software Web site Music Box Source: CCN Type: USN-498-1 libvorbis vulnerabilities Source: CCN Type: libvorbis Web site Xiph.org Source: XF Type: UNKNOWN libvorbis-blocksize-code-execution(35624) Source: SUSE Type: SUSE-SR:2007:023 SUSE Security Summary Report | ||||||||||||||||||||||||||||||||
Vulnerable Configuration: | Configuration RedHat 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||||||
BACK |