Vulnerabilities (CVE)

Filtered by vendor Xiph Subscribe
Filtered by product Libfishsound
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-1686 2 Xine, Xiph 3 Xine-lib, Libfishsound, Speex 2024-11-21 9.3 HIGH N/A
Array index vulnerability in Speex 1.1.12 and earlier, as used in libfishsound 0.9.0 and earlier, including Illiminable DirectShow Filters and Annodex Plugins for Firefox, xine-lib before 1.1.12, and many other products, allows remote attackers to execute arbitrary code via a header structure containing a negative offset, which is used to dereference a function pointer.