7.5
CVSSv2

CVE-2014-0045

Published: 08/02/2014 Updated: 31/12/2016
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The needSamples method in AudioOutputSpeech.cpp in the client in Mumble 1.2.4 and the 1.2.3 pre-release snapshots, Mumble for iOS 1.1 up to and including 1.2.2, and MumbleKit before commit fd190328a9b24d37382b269a5674b0c0c7a7e36d does not check the return value of the opus_decode_float function, which allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via a crafted Opus voice packet, which triggers an error in opus_decode_float, a conversion of a negative integer to an unsigned integer, and a heap-based buffer over-read and over-write.

Vulnerable Product Search on Vulmon Subscribe to Product

light speed gaming mumble 1.2

light speed gaming mumble 1.2.1

light speed gaming mumble 1.1.1

light speed gaming mumble 1.1

light speed gaming mumble 1.2.4

light speed gaming mumble 1.2.3

light speed gaming mumble 1.2.2

light speed gaming mumblekit -

Vendor Advisories

Debian Bug report logs - #737739 mumble: CVE-2014-0044 CVE-2014-0045 Package: src:mumble; Maintainer for src:mumble is Christopher Knadle <ChrisKnadle@coredumpus>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Wed, 5 Feb 2014 15:15:02 UTC Severity: grave Tags: fixed-upstream, security, upstream Foun ...