CVE-2017-5665: LIBMP3SPLT Project LIBMP3SPLT
Medium severity, CVSS 5.5. EPSS: 0.9% chance of exploitation in the next 30 days.
The splt_cue_export_to_file function in cue.c in libmp3splt 0.9.2 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file.
Affected products
- LIBMP3SPLT Project LIBMP3SPLT: version 0.9.2 only
Published 2017-03-01. Last modified 2026-06-17.