Vulnerabilities > Mpg123 > High

DATE CVE VULNERABILITY TITLE RISK
2006-07-06 CVE-2006-3355 Remote Buffer Overflow vulnerability in Mpg123 Pre0.59Sr11
Heap-based buffer overflow in httpdget.c in mpg123 before 0.59s-rll allows remote attackers to execute arbitrary code via a long URL, which is not properly terminated before being used with the strncpy function.
network
low complexity
mpg123
7.5
2005-01-11 CVE-2004-0991 Heap Overflow vulnerability in MPG123 Layer 2 Frame Header
Buffer overflow in mpg123 before 0.59s-r9 allows remote attackers to execute arbitrary code via frame headers in MP2 or MP3 files.
network
low complexity
mpg123 suse
7.5
2004-12-23 CVE-2004-0805 Remote Stereo Boundary Buffer Overflow vulnerability in MPG123
Buffer overflow in layer2.c in mpg123 0.59r and possibly mpg123 0.59s allows remote attackers to execute arbitrary code via a certain (1) mp3 or (2) mp2 file.
network
low complexity
mpg123 mandrakesoft
7.5
2003-11-17 CVE-2003-0865 Remote File Play Heap Corruption vulnerability in Mpg123 0.59R/0.59S
Heap-based buffer overflow in readstring of httpget.c for mpg123 0.59r and 0.59s allows remote attackers to execute arbitrary code via a long request.
network
low complexity
mpg123
7.5
2003-08-18 CVE-2003-0577 Unspecified vulnerability in Mpg123 0.59R/Pre0.59S
mpg123 0.59r allows remote attackers to cause a denial of service and possibly execute arbitrary code via an MP3 file with a zero bitrate, which creates a negative frame size.
network
low complexity
mpg123
7.5