Vulnerabilities > Mp3Gain > Medium

DATE CVE VULNERABILITY TITLE RISK
2017-09-13 CVE-2017-14410 Out-of-bounds Read vulnerability in Mp3Gain 1.5.2
A buffer over-read was discovered in III_i_stereo in layer3.c in mpglibDBL, as used in MP3Gain version 1.5.2.
local
low complexity
mp3gain CWE-125
5.5
2017-09-13 CVE-2017-14408 Out-of-bounds Read vulnerability in Mp3Gain 1.5.2
A stack-based buffer over-read was discovered in dct36 in layer3.c in mpglibDBL, as used in MP3Gain version 1.5.2.
local
low complexity
mp3gain CWE-125
5.5
2017-09-13 CVE-2017-14407 Out-of-bounds Read vulnerability in Mp3Gain 1.5.2
A stack-based buffer over-read was discovered in filterYule in gain_analysis.c in MP3Gain version 1.5.2.
local
low complexity
mp3gain CWE-125
5.5
2017-09-13 CVE-2017-14406 NULL Pointer Dereference vulnerability in Mp3Gain 1.5.2
A NULL pointer dereference was discovered in sync_buffer in interface.c in mpglibDBL, as used in MP3Gain version 1.5.2.
local
low complexity
mp3gain CWE-476
5.5
2017-09-07 CVE-2017-12912 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Mp3Gain 1.5.2
The "mpglibDBL/layer3.c" file in MP3Gain 1.5.2.r2 has a vulnerability which results in a read access violation when opening a crafted MP3 file.
local
low complexity
mp3gain CWE-119
5.5
2017-09-07 CVE-2017-12911 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Mp3Gain 1.5.2
The "apetag.c" file in MP3Gain 1.5.2.r2 has a vulnerability which results in a stack memory corruption when opening a crafted MP3 file.
local
low complexity
mp3gain CWE-119
5.5