Medium severity6.5NVD Advisory· Published Aug 1, 2017· Updated May 13, 2026
CVE-2017-11552
CVE-2017-11552
Description
mpg321.c in mpg321 0.3.2-1 does not properly manage memory for use with libmad 0.15.1b, which allows remote attackers to cause a denial of service (memory corruption seen in a crash in the mad_decoder_run function in decoder.c in libmad) via a crafted MP3 file.
Affected products
1- cpe:2.3:a:underbit:mad_libmad:0.15.1b:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- seclists.org/fulldisclosure/2017/Jul/94nvdExploitMailing ListThird Party Advisory
- bugs.debian.org/cgi-bin/bugreport.cginvd
- www.exploit-db.com/exploits/42409/nvd
News mentions
0No linked articles in our index yet.