CVE-2004-0805
Description
Buffer overflow in mpg123 0.59r allows remote code execution via crafted MP3/MP2 files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Buffer overflow in mpg123 0.59r allows remote code execution via crafted MP3/MP2 files.
Vulnerability
A buffer overflow vulnerability exists in the layer2.c file of mpg123 versions 0.59r and possibly 0.59s. The flaw occurs during the decoding of layer2 frames in MPEG audio files. An attacker can trigger the overflow by providing a specially crafted MP3 or MP2 file that fails header checks, leading to memory corruption. The same vulnerable code is present in 0.59s, but additional header checks in that version prevent the specific test case from crashing; however, a more carefully crafted file might still exploit it [1][2].
Exploitation
An attacker needs to craft a malicious MP3 or MP2 file that exploits the buffer overflow. No authentication or special network position is required; the attacker can deliver the file via any means (e.g., email, download, web). The victim must play the file using a vulnerable version of mpg123. Upon processing the malformed audio data, the overflow occurs, potentially allowing the attacker to overwrite critical memory regions [1][2].
Impact
Successful exploitation allows arbitrary code execution with the privileges of the user running mpg123. This can lead to full compromise of the user's account, including access to files, data, and system resources. The impact is limited to the user's privilege level; it does not directly grant root access unless the user has elevated permissions [1][2].
Mitigation
The vulnerability is fixed in mpg123 version 0.59s-r4 as provided by the Gentoo Linux distribution [2]. A patch was contributed by Daniel Kobras, the Debian mpg123 package maintainer [1]. Users should upgrade to the patched version. No workaround is available; playing untrusted audio files with vulnerable versions should be avoided [2].
AI Insight generated on May 24, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.
Affected products
6cpe:2.3:o:mandrakesoft:mandrake_linux:10.0:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:o:mandrakesoft:mandrake_linux:10.0:*:*:*:*:*:*:*
- cpe:2.3:o:mandrakesoft:mandrake_linux:10.0:*:amd64:*:*:*:*:*
- cpe:2.3:o:mandrakesoft:mandrake_linux:9.2:*:*:*:*:*:*:*
- cpe:2.3:o:mandrakesoft:mandrake_linux:9.2:*:amd64:*:*:*:*:*
cpe:2.3:o:mandrakesoft:mandrake_linux_corporate_server:2.1:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:mandrakesoft:mandrake_linux_corporate_server:2.1:*:*:*:*:*:*:*
- cpe:2.3:o:mandrakesoft:mandrake_linux_corporate_server:2.1:*:x86_64:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- www.debian.org/security/2004/dsa-564nvdPatchVendor Advisory
- lists.grok.org.uk/pipermail/full-disclosure/2004-September/026151.htmlnvd
- www.alighieri.org/advisories/advisory-mpg123.txtnvd
- www.gentoo.org/security/en/glsa/glsa-200409-20.xmlnvd
- www.mandrakesecure.net/en/advisories/advisory.phpnvd
- www.securityfocus.com/archive/1/374433nvd
- www.securityfocus.com/bid/11121nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/17287nvd
News mentions
0No linked articles in our index yet.