First published: Wed May 20 2020(Updated: )
A remote user can create a specially crafted M3U file, media playlist file that when loaded by the target user, will trigger a memory leak, whereby Amarok 2.8.0 continue to waste resources over time, eventually allows attackers to cause a denial of service.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
=2.8.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-13152 is a vulnerability that allows a remote user to cause a denial of service in Amarok 2.8.0.
CVE-2020-13152 works by a remote user creating a specially crafted M3U file that triggers a memory leak in Amarok 2.8.0, leading to resource wastage and eventually causing a denial of service.
CVE-2020-13152 has a severity rating of medium (5.5).
Amarok version 2.8.0 is affected by CVE-2020-13152.
To fix CVE-2020-13152, update Amarok to a version that is not affected by the vulnerability.