LAME 3.99.5 has a NULL Pointer Dereference in the hip_decode_init function within libmp3lame/mpglib_interface.c via a malformed mpg file, because of an incorrect calloc call.
CVSS Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HLame Project Lame
APPLame Project3.99.5
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
Related vulnerabilities
CVE-2017-11720CRITICAL9.8PL ✓same product
Division-by-zero w LAME 3.99.5 przy przetwarzaniu złośliwego pliku audio
CVE-2017-13712HIGH7.5same product
NULL Pointer Dereference in the id3v2AddAudioDuration function in libmp3lame/id3tag.c in LAME 3.99.5 allows at...
CVE-2017-9871HIGH7.8same product
The III_i_stereo function in layer3.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products,...
CVE-2017-9872HIGH7.8same product
The III_dequantize_sample function in layer3.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other ...
CVE-2017-8419HIGH7.8same product
LAME through 3.99.5 relies on the signed integer data type for values in a WAV or AIFF header, which allows re...