A buffer over-read was discovered in ReadMP3APETag in apetag.c in MP3Gain 1.6.2. The vulnerability causes an application crash, which leads to remote denial of service. Reference: https://sourceforge.net/p/mp3gain/bugs/46/
Created mp3gain tracking bugs for this issue: Affects: epel-all [bug 1903797] Affects: fedora-all [bug 1903796]
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.