CVE-2017-15046: Lame Project Lame
Medium severity, CVSS 5.5. EPSS: 0.7% chance of exploitation in the next 30 days.
LAME 3.99.5, 3.99.4, 3.98.4, 3.98.2, 3.98 and 3.97 have a stack-based buffer overflow in unpack_read_samples in frontend/get_audio.c, a different vulnerability than CVE-2017-9412.
Affected products
- Lame Project Lame: version 3.97 only; version 3.98 only; version 3.98.2 only; version 3.98.4 only; version 3.99.4 only; version 3.99.5 only
Published 2017-10-06. Last modified 2026-06-17.