Logo
vulnerabilityCVE-2017-11551
Name
CVE-2017-11551
Source
NVD ( link)Debian ( link)
Description
The id3_field_parse function in field.c in libid3tag 0.15.1b allows remote attackers to cause a denial of service (OOM) via a crafted MP3 file.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
libid3tag
Patched

Vulnerability Ratings#


5.5
other
4.3
CVSSv2

Others affected components#


Name
Project
Project Version
Version
Status
openwrt
master
0.16.3-r3
Not Affected
openwrt
openwrt-25.12
0.16.3-r2
Not Affected
yocto
kirkstone
0.15.1b
Patched
yocto
master
0.15.1b
Patched

Resolved with patches#


libid3tag (yocto:kirkstone)

#
Title
Author
Resolve
1
Patch #1
Changqing Li <changqing.li@windriver.com>
CVE-2004-2779
CVE-2017-11551

libid3tag (yocto:master)

#
Title
Author
Resolve
1
Patch #1
Changqing Li <changqing.li@windriver.com>
CVE-2004-2779
CVE-2017-11551

libid3tag (yocto:scarthgap)

#
Title
Author
Resolve
1
Patch #1
Changqing Li <changqing.li@windriver.com>
CVE-2004-2779
CVE-2017-11551