← Back

CVE-2009-0475

nvd nist
Published: Feb 11, 2009Modified: Apr 23, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

Integer underflow in the Huffman decoding functionality (pvmp3_huffman_parsing.cpp) in OpenCORE 2.0 and earlier allows remote attackers to cause a denial of service (process crash) and possibly execute arbitrary code via a crafted MP3 file that triggers heap corruption.

Affected (1)

Products: Android: Opencore
1 product
Opencore
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 2.0

Related CWEs

Timeline

No history available yet.