CRITICAL9.8CVE-2017-14632Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_headerout() in info…
HIGH8.8CVE-2018-10392mapping0_forward in mapping0.c in Xiph.Org libvorbis 1.3.6 does not validate the number of channels, which allows remote attackers to cause…
from 0, < 1.3.6-r1
HIGH8.8libvorbis - security update
from 0, < 1.3.5-r3
HIGH7.5bark_noise_hybridmp in psy.c in Xiph.Org libvorbis 1.3.6 has a stack-based buffer over-read.
from 0, < 1.3.6-r2
MEDIUM6.5In Xiph.Org libvorbis 1.3.5, an out-of-bounds array read vulnerability exists in the function mapping0_forward() in mapping0.c, which may l…