vendor:
mpg123
by:
Unknown
7.5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: mpg123
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE: None provided
CPE: a:mpg123:mpg123
Platforms Tested:
Unknown
Remote Client-Side Buffer Overflow in mpg123
The vulnerability is caused by a lack of proper validation of user-supplied strings before copying them into static process buffers. An attacker can exploit this vulnerability to execute arbitrary code with the privileges of the user who activated the vulnerable application, potentially leading to unauthorized access or privilege escalation.
Mitigation:
Apply the latest patch or update from the vendor.