漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
Clementine Music Player through 1.3.1 (when a GLib 2.0.0 DLL is used) is vulnerable to a Read Access Violation on Block Data Move, affecting the MP3 file parsing functionality at memcpy+0x265. The vulnerability is triggered when the user opens a crafted MP3 file or loads a remote stream URL that is mishandled by Clementine. Attackers could exploit this issue to cause a crash (DoS) of the clementine.exe process or achieve arbitrary code execution in the context of the current logged-in Windows user.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Clementine 缓冲区错误漏洞
Vulnerability Description
Clementine是个人开发者的一个多平台音乐播放器,可以运行在 GNU/Linux, Mac OS X 与 Windows 操作系统上。Clementine 的设计来源于较早的 Amarok 1.4。主程序在 GPLv3 下发布而一些插件则以专有许可发布。 Clementine Music Player 1.3.1之前存在安全漏洞,攻击者可以利用此问题导致 clementine.exe 进程崩溃 (DoS) 或在当前登录的 Windows 用户的上下文中实现任意代码执行。
CVSS Information
N/A
Vulnerability Type
N/A