Multiple buffer overflows in libmusicbrainz (aka mb_client or MusicBrainz Client Library) 2.1.2 and earlier, and SVN 8406 and earlier, allow remote attackers to cause a denial of service (crash) or execute arbitrary code via (1) a long Location header by the HTTP server, which triggers an overflow in the MBHttp::Download function in lib/http.cpp; and (2) a long URL in RDF data, as demonstrated by a URL in an rdf:resource field in an RDF XML document, which triggers overflows in many functions in lib/rdfparse.c.
CVSS Details
- CVSS 3.1 Base Score: 9.1
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade libmusicbrainz | Dec 10, 2025 | Dec 2, 2006 |
| Gentoo Linux | — | Upgrade media-libs/musicbrainz. | Oct 30, 2017 | Aug 17, 2006 |
| Suse | — | Upgrade libmusicbrainz4Upgrade libmusicbrainz-devel | Aug 9, 2024 | Jun 28, 2013 |
| Ubuntu | — | Upgrade libmusicbrainz4c2aUpgrade libmusicbrainz2c2Upgrade libmusicbrainz2Upgrade libmusicbrainz4Upgrade libmusicbrainz4c2 | Nov 8, 2024 | Aug 17, 2006 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub