AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2008-1686

HIGH · CVSS 9.3 EPSS 6.49%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2008-04-08 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2008-1686
Severity
HIGH
CVSS
9.3
EPSS
6.49%
Firefox

Original NVD Description

Array index vulnerability in Speex 1.1.12 and earlier, as used in libfishsound 0.9.0 and earlier, including Illiminable DirectShow Filters and Annodex Plugins for Firefox, xine-lib before 1.1.12, and many other products, allows remote attackers to execute arbitrary code via a header structure containing a negative offset, which is used to dereference a function pointer.