﻿id	summary	reporter	owner	description	type	status	priority	milestone	component	version	severity	resolution	keywords	cc
20125	Fix CVE-2023-43361 in vorbis-tools	Douglas R. Reno	Douglas R. Reno	"This should be doable via a sed. The patch can be found at [https://src.fedoraproject.org/rpms/vorbis-tools/blob/rawhide/f/vorbis-tools-1.4.2-CVE-2023-43361.patch]

This issue is rated as High at NVD, though note that it's only exploitable locally since you have to do operations on a crafted file to exploit the vulnerability. The vulnerability looks to allow for arbitrary code execution or a denial of service when converting WAV files to OGG files. "	defect	closed	elevated	12.2	BOOK	git	medium	fixed		
