Known Vulnerabilities for products from Lame Project
Listed below are 15 of the newest known vulnerabilities associated with the vendor "Lame Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2017-15046 json | LAME 3.99.5, 3.99.4, 3.98.4, 3.98.2, 3.98 and 3.97 have a stack-based buffer overflow in unpack_read_samples in frontend/get_... | 5.5 - MEDIUM | 2017-10-06 | 2021-02-04 |
| CVE-2017-15045 json | LAME 3.99, 3.99.1, 3.99.2, 3.99.3, 3.99.4, 3.99.5, 3.98.4, 3.98.2 and 3.98 has a heap-based buffer over-read in fill_buffer i... | 5.5 - MEDIUM | 2017-10-06 | 2021-03-05 |
| CVE-2017-15019 json | LAME 3.99.5 has a NULL Pointer Dereference in the hip_decode_init function within libmp3lame/mpglib_interface.c via a malform... | 7.8 - HIGH | 2017-10-05 | 2017-10-12 |
| CVE-2017-15018 json | LAME 3.99.5, 3.99.4, 3.99.3, 3.99.2, 3.99.1, 3.99, 3.98.4, 3.98.2 and 3.98 have a heap-based buffer over-read when handling a... | 5.5 - MEDIUM | 2017-10-05 | 2021-02-04 |
| CVE-2017-13712 json | NULL Pointer Dereference in the id3v2AddAudioDuration function in libmp3lame/id3tag.c in LAME 3.99.5 allows attackers to perf... | 7.5 - HIGH | 2017-08-28 | 2017-09-01 |
| CVE-2017-11720 json | There is a division-by-zero vulnerability in LAME 3.99.5, caused by a malformed input file. | Not Provided | 2017-07-28 | 2025-04-20 |
| CVE-2017-9872 json | The III_dequantize_sample function in layer3.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allow... | 7.8 - HIGH | 2017-06-25 | 2017-08-12 |
| CVE-2017-9871 json | The III_i_stereo function in layer3.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allows remote ... | 7.8 - HIGH | 2017-06-25 | 2017-06-29 |
| CVE-2017-9870 json | The III_i_stereo function in layer3.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allows remote ... | 5.5 - MEDIUM | 2017-06-25 | 2019-10-03 |
| CVE-2017-9869 json | The II_step_one function in layer2.c in mpglib, as used in libmpgdecoder.a in LAME 3.99.5 and other products, allows remote a... | 5.5 - MEDIUM | 2017-06-25 | 2019-10-03 |
| CVE-2017-9412 json | The unpack_read_samples function in frontend/get_audio.c in LAME 3.99.5 allows remote attackers to cause a denial of service ... | Not Provided | 2017-07-27 | 2025-04-20 |
| CVE-2017-8419 json | LAME through 3.99.5 relies on the signed integer data type for values in a WAV or AIFF header, which allows remote attackers ... | Not Provided | 2017-05-02 | 2025-04-20 |
| CVE-2015-9101 json | The fill_buffer_resample function in util.c in libmp3lame.a in LAME 3.98.4, 3.98.2, 3.98, 3.99, 3.99.1, 3.99.2, 3.99.3, 3.99.... | Not Provided | 2017-06-25 | 2025-04-20 |
| CVE-2015-9100 json | The fill_buffer_resample function in util.c in libmp3lame.a in LAME 3.99.5 allows remote attackers to cause a denial of servi... | Not Provided | 2017-06-25 | 2025-04-20 |
| CVE-2015-9099 json | The lame_init_params function in lame.c in libmp3lame.a in LAME 3.99.5 allows remote attackers to cause a denial of service (... | Not Provided | 2017-06-25 | 2025-04-20 |
Known software with vulnerabilities from Lame Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Lame Project | Lame | 3.0 |