Vulnerabilities > CVE-2020-24994 - Unspecified vulnerability in Libass Project Libass 0.13.3/0.14.0

047910
CVSS 6.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL

Summary

Stack overflow in the parse_tag function in libass/ass_parse.c in libass before 0.15.0 allows remote attackers to cause a denial of service or remote code execution via a crafted file.

Vulnerable Configurations

Part Description Count
Application
Libass_Project
2