Known Vulnerabilities for Libvorbis by Xiph.org
Listed below are 10 of the newest known vulnerabilities associated with "Libvorbis" by "Xiph.org".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2020-20412 json | lib/codebook.c in libvorbis before 1.3.6, as used in StepMania 5.0.12 and other products, has insufficient array bounds check... | 6.5 - MEDIUM | 2020-12-26 | 2023-03-27 |
| CVE-2018-10393 json | bark_noise_hybridmp in psy.c in Xiph.Org libvorbis 1.3.6 has a stack-based buffer over-read. | 7.5 - HIGH | 2018-04-26 | 2021-11-30 |
| CVE-2018-10392 json | mapping0_forward in mapping0.c in Xiph.Org libvorbis 1.3.6 does not validate the number of channels, which allows remote atta... | 8.8 - HIGH | 2018-04-26 | 2021-11-30 |
| CVE-2017-14633 json | In Xiph.Org libvorbis 1.3.5, an out-of-bounds array read vulnerability exists in the function mapping0_forward() in mapping0.... | 6.5 - MEDIUM | 2017-09-21 | 2020-12-07 |
| CVE-2017-14632 json | Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_heade... | 9.8 - CRITICAL | 2017-09-21 | 2020-12-07 |
| CVE-2017-14160 json | The bark_noise_hybridmp function in psy.c in Xiph.Org libvorbis 1.3.5 allows remote attackers to cause a denial of service (o... | 8.8 - HIGH | 2017-09-21 | 2021-11-30 |
| CVE-2017-11333 json | Not Provided | 2017-07-31 | 2025-04-20 | |
| CVE-2008-2009 json | Not Provided | 2008-05-16 | 2026-04-23 | |
| CVE-2008-1423 json | Not Provided | 2008-05-16 | 2026-04-23 | |
| CVE-2008-1420 json | Not Provided | 2008-05-16 | 2026-04-23 |
Known Affected Configurations (CPE V2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Xiph.org | Libvorbis | 1.3.6 | |||
| Application | Xiph.org | Libvorbis | 1.3.5 | |||
| Application | Xiph.org | Libvorbis | 1.3.4 | |||
| Application | Xiph.org | Libvorbis | 1.3.3 | |||
| Application | Xiph.org | Libvorbis | 1.3.2 | |||
| Application | Xiph.org | Libvorbis | 1.3.1 | |||
| Application | Xiph.org | Libvorbis | 1.2.3 | |||
| Application | Xiph.org | Libvorbis | 1.2.2 | |||
| Application | Xiph.org | Libvorbis | 1.2.2 | |||
| Application | Xiph.org | Libvorbis | 1.2.0 | |||
| Application | Xiph.org | Libvorbis | 1.1.2 | |||
| Application | Xiph.org | Libvorbis | 1.1.1 | |||
| Application | Xiph.org | Libvorbis | 1.1.0 | |||
| Application | Xiph.org | Libvorbis | 1.0.1 | |||
| Application | Xiph.org | Libvorbis | 1.0 | |||
| Application | Xiph.org | Libvorbis | 1.0 | |||
| Application | Xiph.org | Libvorbis | 1.0 | |||
| Application | Xiph.org | Libvorbis | 1.0 |