Total vulnerabilities in the database
lib/codebook.c in libvorbis before 1.3.6, as used in StepMania 5.0.12 and other products, has insufficient array bounds checking via a crafted OGG file. NOTE: this may overlap CVE-2018-5146.
Software | From | Fixed in |
---|---|---|
xiph.org / libvorbis | 1.3.2 | 1.3.6 |
stepmania / stepmania | 5.0.12 | 5.0.12.x |