Owntone Vulnerabilities

Comprehensive security vulnerability database for Owntone products

Last updated: Aug 10, 2021
Total CVEs

1

Critical

1

With Exploits

0

Last 30 Days

0

Severity Distribution

Critical1
100%
High0
0%
Medium0
0%
Low0
0%
DescriptionVendor / ProductExploit Status
CVE-2021-383839.8

This vulnerability allows an attacker to execute arbitrary code on the OwnTone server, potentially taking control of the system. It occurs due to a flaw in the way the server handles memory, but the attacker must be able to send specially crafted network requests to exploit it.

owntoneowntone server
Theoretical
over 4 years agoAug 10, 2021

About Owntone Security

This page tracks all publicly disclosed security vulnerabilities (CVEs) affecting Owntone products. Our database is updated in real-time from the National Vulnerability Database (NVD) and enriched with exploit information from GitHub and other security research sources.

Each CVE listing includes CVSS severity scores, exploit availability status, AI-powered vulnerability summaries, and links to official patches and security advisories.