Logo
vulnerabilityCVE-2023-43361
Name
CVE-2023-43361
Source
NVD ( link)Debian ( link)
Description
Buffer Overflow vulnerability in Vorbis-tools v.1.4.2 allows a local attacker to execute arbitrary code and cause a denial of service during the conversion of wav files to ogg files.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
vorbis-tools
Patched

Vulnerability Rating#


7.8
CVSSv31

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
1.4.3
Not Affected
buildroot
master
1.4.3
Not Affected
yocto
kirkstone
1.4.3
Not Affected
yocto
master
1.4.3
Not Affected

Resolved with patches#


vorbis-tools (yocto:scarthgap)

#
Title
Author
Resolve
1
oggenc: Don't assume the output path ends in a file name.
Ralph Giles <giles@thaumas.net>
CVE-2023-43361