Vulnerabilities > CVE-2019-14247 - Out-of-bounds Write vulnerability in Mpg321 Project Mpg321 0.3.2

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
local
low complexity
mpg321-project
CWE-787

Summary

The scan() function in mad.c in mpg321 0.3.2 allows remote attackers to trigger an out-of-bounds write via a zero bitrate in an MP3 file.

Vulnerable Configurations

Part Description Count
Application
Mpg321_Project
1

Common Weakness Enumeration (CWE)