Buffer Overflow vulnerability in oggvideotools 0.9.1 allows remote attackers to run arbitrary code via opening of crafted ogg file. https://github.com/xiaoxiongwang/security/tree/master/oggvideotools#segv-and-heap-use-after-free-detected-in-line-17-of-streamextractorcpp https://sourceforge.net/p/oggvideotools/bugs/11/
Created oggvideotools tracking bugs for this issue: Affects: fedora-37 [bug 2234723] Affects: fedora-38 [bug 2234724]
I suspect that fixing #2234728 will fix this one too. Unfortunately the original bug reporter forgot to attach the sample. But the same codepath seems to be triggerred.