Vulnerabilities > Flac Project

DATE CVE VULNERABILITY TITLE RISK
2023-08-22 CVE-2020-22219 Classic Buffer Overflow vulnerability in Flac Project Flac
Buffer Overflow vulnerability in function bitwriter_grow_ in flac before 1.4.0 allows remote attackers to run arbitrary code via crafted input to the encoder.
local
low complexity
flac-project CWE-120
7.8
2018-04-25 CVE-2017-6888 Missing Release of Resource after Effective Lifetime vulnerability in multiple products
An error in the "read_metadata_vorbiscomment_()" function (src/libFLAC/stream_decoder.c) in FLAC version 1.3.2 can be exploited to cause a memory leak via a specially crafted FLAC file.
local
low complexity
flac-project debian fedoraproject CWE-772
5.5