Vulnerabilities > Libmp3Splt Project

DATE CVE VULNERABILITY TITLE RISK
2017-10-09 CVE-2017-15185 Improper Input Validation vulnerability in Libmp3Splt Project Libmp3Splt 0.9.2
plugins/ogg.c in Libmp3splt 0.9.2 calls the libvorbis vorbis_block_clear function with uninitialized data upon detection of invalid input, which allows remote attackers to cause a denial of service (application crash) via a crafted file.
local
low complexity
libmp3splt-project CWE-20
5.0
2017-03-01 CVE-2017-5665 NULL Pointer Dereference vulnerability in Libmp3Splt Project Libmp3Splt 0.9.2
The splt_cue_export_to_file function in cue.c in libmp3splt 0.9.2 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file.
local
low complexity
libmp3splt-project CWE-476
5.5