Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2007-4619

Multiple integer overflows in Free Lossless Audio Codec (FLAC) libFLAC before 1.2.1, as used in Winamp before 5.5 and other products, allow user-assisted remote attackers to execute arbitrary code via a malformed FLAC file that triggers improper memory allocation, resulting in a heap-based buffer overflow.

  • Published: Oct 12, 2007
  • Updated: Apr 13, 2023
  • CVE: CVE-2007-4619
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 9.3
  • AV:N/AC:M/Au:N/C:C/I:C/A:C

CWEs:

Software From Fixed in
nullsoft / winamp - 5.35.x
flac / libflac - 1.2.x