Name
libmad
Version
0.15.1b
Type
library
Description
MPEG Audio Decoder library
Licenses
GPL-2.0-or-later
PURL
-
CPE
cpe:2.3:*:*:libmad:0.15.1b:*:*:*:*:*:*:*
Other Versions#
Patches#
#
Title
Author
Resolve
1
Patch #1
Marko Lindqvist <cazfi74@gmail.com>
2
Patch #2
Ross Burton <ross.burton@intel.com>
3
Patch #3
Unknown
4
Remove clang unsupported compiler flags
=?UTF-8?q?Sebastian=20Dr=C3=B6ge?= <sebastian@centricular.com>
5
Patch #5
Unknown
6
Patch #6
Unknown
7
configure: Respect the cflags from environment
Khem Raj <raj.khem@gmail.com>
Vulnerabilities#
Name
Analysis
Description
False Positive
The mad_decoder_run() function in decoder.c in Underbit libmad through 0.15.1b allows remote attackers to cause a denial of service (SIGABRT because of double free or corruption) or possibly have unspecified other impact via a crafted file. NOTE: this may overlap CVE-2017-11552.
False Positive
mpg321.c in mpg321 0.3.2-1 does not properly manage memory for use with libmad 0.15.1b, which allows remote attackers to cause a denial of service (memory corruption seen in a crash in the mad_decoder_run function in decoder.c in libmad) via a crafted MP3 file.