Unrated severityNVD Advisory· Published Jul 2, 2007· Updated Apr 23, 2026
CVE-2007-3507
CVE-2007-3507
Description
Stack-based buffer overflow in the local__vcentry_parse_value function in vorbiscomment.c in flac123 (aka flac-tools or flac) before 0.0.10 allows user-assisted remote attackers to execute arbitrary code via a large comment value_length.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
10- www.isecpartners.com/advisories/2007-002-flactools.txtnvdPatchVendor Advisory
- osvdb.org/40524nvd
- secunia.com/advisories/26827nvd
- security.gentoo.org/glsa/glsa-200709-06.xmlnvd
- securityreason.com/securityalert/2854nvd
- sourceforge.net/forum/forum.phpnvd
- www.securityfocus.com/archive/1/472504/100/0/threadednvd
- www.securityfocus.com/bid/24712nvd
- www.vupen.com/english/advisories/2007/2420nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/35175nvd
News mentions
0No linked articles in our index yet.