Vulnerabilities > Taglib

DATE CVE VULNERABILITY TITLE RISK
2018-05-30 CVE-2018-11439 Out-of-bounds Read vulnerability in multiple products
The TagLib::Ogg::FLAC::File::scan function in oggflacfile.cpp in TagLib 1.11.1 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted audio file.
network
low complexity
taglib debian CWE-125
6.5
2017-08-08 CVE-2017-12678 Unrestricted Upload of File with Dangerous Type vulnerability in multiple products
In TagLib 1.11.1, the rebuildAggregateFrames function in id3v2framefactory.cpp has a pointer to cast vulnerability, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted audio file.
network
low complexity
taglib debian CWE-434
8.8