Related Vulnerabilities: CVE-2017-15045  

LAME before 3.100 has a heap-based buffer over-read in fill_buffer in libmp3lame/util.c, related to lame_encode_buffer_sample_t in libmp3lame/lame.c.

Severity Medium

Remote Yes

Type Denial of service

Description

LAME before 3.100 has a heap-based buffer over-read in fill_buffer in libmp3lame/util.c, related to lame_encode_buffer_sample_t in libmp3lame/lame.c.

AVG-330 lame 3.99.5-3 3.100-1 High Fixed FS#54859

https://sourceforge.net/p/lame/bugs/478/

A different vulnerability than CVE-2017-9410.