The id3fieldparse function in field.c in libid3tag 0.15.1b allows remote attackers to cause a denial of service (OOM) via a crafted MP3 file.
{ "urgency": "not yet assigned" }