Known Vulnerabilities for products from Mumble

Listed below are 7 of the newest known vulnerabilities associated with the vendor "Mumble".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-27229 Mumble before 1.3.4 allows remote code execution if a victim navigates to a crafted URL on a server list and clicks on the Op... 8.8 - HIGH 2021-02-16 2022-05-06
CVE-2020-13962 Qt 5.12.2 through 5.14.2, as used in unofficial builds of Mumble 1.3.0 and other products, mishandles OpenSSL's error queue, ... 7.5 - HIGH 2020-06-09 2023-11-07
CVE-2018-20743 murmur in Mumble through 1.2.19 before 2018-08-31 mishandles multiple concurrent requests that are persisted in the database,... 7.5 - HIGH 2019-01-25 2019-07-23
CVE-2014-3756 The client in Mumble 1.2.x before 1.2.6 allows remote attackers to force the loading of an external file and cause a denial o... 5 - MEDIUM 2014-11-16 2014-11-17
CVE-2014-3755 The QSvg module in Qt, as used in the Mumble client 1.2.x before 1.2.6, allows remote attackers to cause a denial of service ... 5 - MEDIUM 2014-11-16 2014-11-17
CVE-2012-0863 Mumble 1.2.3 and earlier uses world-readable permissions for .local/share/data/Mumble/.mumble.sqlite files in home directorie... 2.1 - LOW 2012-04-30 2017-12-19
CVE-2010-2490 Mumble: murmur-server has DoS due to malformed client query 6.5 - MEDIUM 2019-10-31 2019-11-06

Known software with vulnerabilities from Mumble

Type Vendor Product Version
ApplicationMumbleMumble-