Libvorbis

Vendor:

First CVE: Sep 21, 2007 · Active for 18 years

13
Total CVEs
More Total CVEs than 91% of tracked products
2.6
Avg CVEs / Year
Higher CVE frequency than 75% of tracked products
6.7
Avg CVSS
Higher Avg CVSS than 34% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Libvorbis over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 21, 2007
18 years ago
Most Recent CVE
Dec 26, 2020
2,036 days ago

CVE Severity & Scoring

Libvorbis13 CVEs
All CVEs352,231 CVEs
MediumHighCritical
Attack Vector
Local1 (7.7%)
Network6 (46.2%)
Unknown6 (46.2%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low7 (53.8%)
High0 (0.0%)
Unknown6 (46.2%)
User Interaction
None2 (15.4%)
Unknown6 (46.2%)
Required5 (38.5%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None7 (53.8%)
Unknown6 (46.2%)

Top CVEs

Signals from CVEs in this product scope (13 CVEs).

13 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
The bark_noise_hybridmp function in psy.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (out-of-bounds access and application crash) or possibly
Sep 21, 20178.831NONO
mapping0_forward in mapping0.c in Xiph.Org libvorbis 1.3.6 does not validate the number of channels, which allows remote attackers to cause a denial of service (heap-based buffer o
Apr 26, 20188.829NONO
Integer overflow in a certain quantvals and quantlist calculation in Xiph.org libvorbis 1.2.0 and earlier allows remote attackers to cause a denial of service (crash) or execute ar
May 16, 20089.328NONO
Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_headerout() in info.c when vi->channels<=0, a similar issue
Sep 21, 20179.826NONO
bark_noise_hybridmp in psy.c in Xiph.Org libvorbis 1.3.6 has a stack-based buffer over-read.
Apr 26, 20187.525NONO
The vorbis_analysis_wrote function in lib/block.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (OOM) via a crafted wav file.
Jul 31, 20175.525NOYES
Integer overflow in residue partition value (aka partvals) evaluation in Xiph.org libvorbis 1.2.0 and earlier allows remote attackers to execute arbitrary code via a crafted OGG fi
May 16, 20086.824NONO
lib/codebook.c in libvorbis before 1.3.6, as used in StepMania 5.0.12 and other products, has insufficient array bounds checking via a crafted OGG file. NOTE: this may overlap CVE-
Dec 26, 20206.522NONO
In Xiph.Org libvorbis 1.3.5, an out-of-bounds array read vulnerability exists in the function mapping0_forward() in mapping0.c, which may lead to DoS when operating on a crafted au
Sep 21, 20176.522NONO
Xiph.org libvorbis before 1.0 does not properly check for underpopulated Huffman trees, which allows remote attackers to cause a denial of service (crash) via a crafted OGG file th
May 16, 20084.319NONO

Exploit Exposure

Signals from CVEs in this product scope (13 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
1 CVE
7.7% of CVEs· 88th percentile

Social Chatter

Signals from CVEs in this product scope (13 CVEs).

Media Mentions

Signals from CVEs in this product scope (13 CVEs).

Top CNAs Publishing CVEs For Libvorbis

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
1.3.628.22.9%00
1.3.547.74.3%01
1.2.036.86.2%00
1.1.219.38.1%00
1.1225.55.3%00
1.1.136.86.2%00
1.1.036.86.2%00
1.0.136.86.2%00
1.0.036.86.2%00
1.014.33.5%00