Description

dr_flac, an audio decoder within the dr_libs toolset, contains an integer overflow vulnerability flaw due to trusting the totalPCMFrameCount field from FLAC metadata before calculating buffer size, allowing an attacker with a specially crafted file to perform DoS against programs using the tool.

INFO

Published Date :

2026-01-20T11:49:08.348Z

Last Modified :

2026-01-20T14:33:15.550Z

Source :

certcc
AFFECTED PRODUCTS

The following products are affected by CVE-2025-14369 vulnerability.

Vendors Products
Mackron
  • Dr Flac

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact